CVE-2008-7229

GreenSQL Firewall (greensql-fw) before 0.9.2 allows remote attackers to bypass SQL injection protection via a crafted string, possibly involving an encoded space character (%20).
References
Link Resource
http://osvdb.org/48906 Exploit
http://www.greensql.net/node/41 Patch Vendor Advisory
http://www.greensql.net/security Patch Vendor Advisory
http://osvdb.org/48906 Exploit
http://www.greensql.net/node/41 Patch Vendor Advisory
http://www.greensql.net/security Patch Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:greensql:greensql_firewall:0.9.2:*:*:*:*:*:*:*

History

21 Nov 2024, 00:58

Type Values Removed Values Added
References () http://osvdb.org/48906 - Exploit () http://osvdb.org/48906 - Exploit
References () http://www.greensql.net/node/41 - Patch, Vendor Advisory () http://www.greensql.net/node/41 - Patch, Vendor Advisory
References () http://www.greensql.net/security - Patch, Vendor Advisory () http://www.greensql.net/security - Patch, Vendor Advisory

Information

Published : 2009-09-14 14:30

Updated : 2024-11-21 00:58


NVD link : CVE-2008-7229

Mitre link : CVE-2008-7229

CVE.ORG link : CVE-2008-7229


JSON object : View

Products Affected

greensql

  • greensql_firewall
CWE
CWE-264

Permissions, Privileges, and Access Controls