PT-2023-10202 · Unknown · Fumon Trello-Octometric
CVE-2015-10023
·
Publicado
2023-01-07
·
Atualizado
2024-05-17
CVSS v2.0
5.2
Média
| Vetor | AV:A/AC:L/Au:S/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Fumon trello-octometric (affected versions not specified)
Description
A critical issue has been found in Fumon trello-octometric, affecting the
main function of the file metrics-ui/server/srv.go. The manipulation of the num argument leads to sql injection.Recommendations
Apply the patch named a1f1754933fbf21e2221fbc671c81a47de6a04ef to fix this issue. As a temporary workaround, consider restricting the manipulation of the
num argument in the main function until the patch is applied.Correção
SQL injection
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Fumon Trello-Octometric