Source |
CVE Liste |
Identifiant |
8298793 |
Date de publication |
2023-01-07 12:15:08 (vue: 2023-01-07 14:08:51) |
Titre |
CVE-2018-25071 |
Texte |
A vulnerability was found in roxlukas LMeve up to 0.1.58. It has been rated as critical. Affected by this issue is the function insert_log of the file wwwroot/ccpwgl/proxy.php. The manipulation of the argument fetch leads to sql injection. Upgrading to version 0.1.59-beta is able to address this issue. The name of the patch is c25ff7fe83a2cda1fcb365b182365adc3ffae332. It is recommended to upgrade the affected component. VDB-217610 is the identifier assigned to this vulnerability. |
Notes |
|
Envoyé |
Oui |
Condensat |
2018 217610 25071 able address affected argument assigned been beta c25ff7fe83a2cda1fcb365b182365adc3ffae332 component critical cve fetch file found function has identifier injection insert issue leads lmeve log manipulation name patch php rated recommended roxlukas sql upgrade upgrading vdb version vulnerability wwwroot/ccpwgl/proxy |
Tags |
Vulnerability
Guideline
|
Stories |
|
Move |
|