A vulnerability classified as critical was found in gesellix titlelink. Affected by this vulnerability is an unknown functionality of the file plugin_content_title.php. The manipulation of the argument phrase leads to sql injection. The name of the patch is b4604e523853965fa981a4e79aef4b554a535db0. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-217351.
References
Link | Resource |
---|---|
https://vuldb.com/?ctiid.217351 | Third Party Advisory |
https://vuldb.com/?id.217351 | Third Party Advisory |
https://github.com/gesellix/titlelink/commit/b4604e523853965fa981a4e79aef4b554a535db0 | Patch Third Party Advisory |
Configurations
Information
Published : 2023-01-04 02:15
Updated : 2023-01-10 07:46
NVD link : CVE-2010-10003
Mitre link : CVE-2010-10003
JSON object : View
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
Products Affected
titlelink_project
- titlelink