Elgg through 1.7.10 has a SQL injection vulnerability
References
Link | Resource |
---|---|
https://security-tracker.debian.org/tracker/CVE-2011-2936 | Third Party Advisory |
https://oss-security.openwall.narkive.com/1UH3NYx8/cve-request-elgg-1-7-10-multiple-vulnerabilities | Exploit Mailing List Third Party Advisory |
https://access.redhat.com/security/cve/cve-2011-2936 | Not Applicable Third Party Advisory |
Configurations
Information
Published : 2019-11-12 06:15
Updated : 2019-11-12 13:53
NVD link : CVE-2011-2936
Mitre link : CVE-2011-2936
JSON object : View
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
Products Affected
elgg
- elgg