The mysql-ocaml bindings 1.0.4 for MySQL do not properly support the mysql_real_escape_string function, which might allow remote attackers to leverage escaping issues involving multibyte character encodings.
References
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2009-10-22 09:30
Updated : 2009-10-26 22:27
NVD link : CVE-2009-2942
Mitre link : CVE-2009-2942
JSON object : View
CWE
Products Affected
mysql
- mysql
mysql-ocaml
- mysql-ocaml