PT-2022-11680 · Unknown · Dns-Stats Hedgehog
Japroc
·
Published
2022-12-25
·
Updated
2024-08-03
·
CVE-2021-4276
CVSS v3.1
8.8
High
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
dns-stats hedgehog (affected versions not specified)
Description
A vulnerability was found in dns-stats hedgehog, which has been rated as problematic. The issue affects the function
DSCIOManager::dsc import input from source of the file src/DSCIOManager.cpp, leading to sql injection. The attack may be launched remotely. However, the real existence of this vulnerability is still doubted at the moment. It is noted that this vulnerability only affects products that are no longer supported by the maintainer.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
SQL injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Dns-Stats Hedgehog