Page 10 of 91 results (0.005 seconds)

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 2

21 Jun 2017 — Multiple SQL injection vulnerabilities in GLPI 0.90.4 allow an authenticated remote attacker to execute arbitrary SQL commands by using a certain character when the database is configured to use Big5 Asian encoding. Varias vulnerabilidades de inyección SQL en GLPI 0.90.4 permiten a un atacante remoto autenticado ejecutar comandos SQL arbitrarios utilizando un determinado carácter cuando la base de datos está configurada para utilizar la codificación Big5 Asian. GLPI version 0.90.4 suffers from a remote SQL ... • https://packetstorm.news/files/id/143157 • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •