CVE Vulnerabilities

CVE-2001-0201

Published: Mar 26, 2001 | Modified: Jul 11, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

The Postaci frontend for PostgreSQL does not properly filter characters such as semicolons, which could allow remote attackers to execute arbitrary SQL queries via the deletecontact.php program.

Affected Software

Name Vendor Start Version End Version
Postaci Umut_gokbayrak 1.1.2 (including) 1.1.2 (including)
Postaci Umut_gokbayrak 1.1.3 (including) 1.1.3 (including)

References