A vulnerability was found in TicklishHoneyBee nodau. It has been rated as critical. Affected by this issue is some unknown functionality of the file src/db.c. The manipulation of the argument value/name leads to sql injection. The name of the patch is 7a7d737a3929f335b9717ddbd31db91151b69ad2. It is recommended to apply a patch to fix this issue. The identifier of this vulnerability is VDB-215252.
References
Link | Resource |
---|---|
https://vuldb.com/?id.215252 | Third Party Advisory VDB Entry |
https://github.com/TicklishHoneyBee/nodau/commit/7a7d737a3929f335b9717ddbd31db91151b69ad2 | Patch Third Party Advisory |
https://github.com/TicklishHoneyBee/nodau/pull/26 | Patch Third Party Advisory |
Configurations
Information
Published : 2022-12-10 14:15
Updated : 2022-12-13 06:39
NVD link : CVE-2022-4399
Mitre link : CVE-2022-4399
JSON object : View
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
Products Affected
nodau_project
- nodau