PT-2003-2536 · Teapop+2 · Teapop+2

Published

1970-01-01

·

Updated

2008-09-10

·

CVE-2003-0515

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions teapop versions 0.3.5 and earlier
Description The issue allows attackers to execute arbitrary SQL and possibly gain privileges due to SQL injection vulnerabilities in the PostgreSQL or MySQL authentication modules. Exploitation of the vulnerabilities can lead to disruption of confidentiality, integrity, and availability of protected information and can be carried out remotely.
Recommendations For teapop versions 0.3.5 and earlier, update to a version later than 0.3.5 to resolve the issue. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

BDU:2015-03494
BDU:2015-03495
BDU:2015-03496
CVE-2003-0515
DSA-347

Affected Products

Mysql Server
Postgresql
Teapop