GreenSQL Firewall (greensql-fw) before 0.9.2 allows remote attackers to bypass SQL injection protection via a crafted string, possibly involving an encoded space character (%20).
References
Link | Resource |
---|---|
http://osvdb.org/48906 | Exploit |
http://www.greensql.net/node/41 | Patch Vendor Advisory |
http://www.greensql.net/security | Patch Vendor Advisory |
http://osvdb.org/48906 | Exploit |
http://www.greensql.net/node/41 | Patch Vendor Advisory |
http://www.greensql.net/security | Patch Vendor Advisory |
Configurations
History
21 Nov 2024, 00:58
Type | Values Removed | Values Added |
---|---|---|
References | () http://osvdb.org/48906 - Exploit | |
References | () http://www.greensql.net/node/41 - Patch, Vendor Advisory | |
References | () http://www.greensql.net/security - Patch, Vendor Advisory |
Information
Published : 2009-09-14 14:30
Updated : 2024-11-21 00:58
NVD link : CVE-2008-7229
Mitre link : CVE-2008-7229
CVE.ORG link : CVE-2008-7229
JSON object : View
Products Affected
greensql
- greensql_firewall
CWE
CWE-264
Permissions, Privileges, and Access Controls