PT-2020-7754 · Unknown · Soplanning

Huy-Ngoc Dau

·

Published

2020-01-07

·

Updated

2020-01-08

·

CVE-2014-8673

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions SOPPlanning versions prior to 1.33
Description Multiple SQL vulnerabilities exist in various PHP files, including planning.php, user list.php, projets.php, user groupes.php, and groupe list.php.
Recommendations For versions prior to 1.33, update to version 1.33 or later to resolve the issue.

Exploit

Fix

SQL injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2014-8673

Affected Products

Soplanning