A vulnerability was found in Nayshlok Voyager. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file Voyager/src/models/DatabaseAccess.java. The manipulation leads to sql injection. The identifier of the patch is f1249f438cd8c39e7ef2f6c8f2ab76b239a02fae. It is recommended to apply a patch to fix this issue. The identifier VDB-218005 was assigned to this vulnerability.
References
Link | Resource |
---|---|
https://github.com/Nayshlok/Voyager/commit/f1249f438cd8c39e7ef2f6c8f2ab76b239a02fae | Patch |
https://vuldb.com/?ctiid.218005 | Permissions Required Third Party Advisory |
https://vuldb.com/?id.218005 | Third Party Advisory |
Configurations
History
20 Dec 2023, 01:52
Type | Values Removed | Values Added |
---|---|---|
References | (MISC) https://vuldb.com/?id.218005 - Third Party Advisory |
07 Nov 2023, 02:18
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-89 |
20 Oct 2023, 07:15
Type | Values Removed | Values Added |
---|---|---|
CWE | ||
Summary | A vulnerability was found in Nayshlok Voyager. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file Voyager/src/models/DatabaseAccess.java. The manipulation leads to sql injection. The identifier of the patch is f1249f438cd8c39e7ef2f6c8f2ab76b239a02fae. It is recommended to apply a patch to fix this issue. The identifier VDB-218005 was assigned to this vulnerability. |
Information
Published : 2023-01-11 15:15
Updated : 2024-05-17 00:58
NVD link : CVE-2014-125074
Mitre link : CVE-2014-125074
JSON object : View
Products Affected
voyager_project
- voyager
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')