PT-2023-10202 · Unknown · Fumon Trello-Octometric

CVE-2015-10023

·

Published

2023-01-07

·

Updated

2024-05-17

CVSS v2.0

5.2

Medium

VectorAV:A/AC:L/Au:S/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Fumon trello-octometric (affected versions not specified)
Description A critical issue has been found in Fumon trello-octometric, affecting the main function of the file metrics-ui/server/srv.go. The manipulation of the num argument leads to sql injection.
Recommendations Apply the patch named a1f1754933fbf21e2221fbc671c81a47de6a04ef to fix this issue. As a temporary workaround, consider restricting the manipulation of the num argument in the main function until the patch is applied.

Fix

SQL injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2015-10023

Affected Products

Fumon Trello-Octometric