First published: Wed Dec 03 2014(Updated: )
SQL injection vulnerability in OpenVAS Manager before 4.0.6 and 5.x before 5.0.7 allows remote attackers to execute arbitrary SQL commands via the timezone parameter in a modify_schedule OMP command.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Fedoraproject Fedora | =21 | |
Openvas Openvas Manager | <=4.0.5 | |
Openvas Openvas Manager | =5.0.0 | |
Openvas Openvas Manager | =5.0.0-beta1 | |
Openvas Openvas Manager | =5.0.0-beta10 | |
Openvas Openvas Manager | =5.0.0-beta11 | |
Openvas Openvas Manager | =5.0.0-beta12 | |
Openvas Openvas Manager | =5.0.0-beta13 | |
Openvas Openvas Manager | =5.0.0-beta2 | |
Openvas Openvas Manager | =5.0.0-beta3 | |
Openvas Openvas Manager | =5.0.0-beta4 | |
Openvas Openvas Manager | =5.0.0-beta5 | |
Openvas Openvas Manager | =5.0.0-beta6 | |
Openvas Openvas Manager | =5.0.0-beta7 | |
Openvas Openvas Manager | =5.0.0-beta8 | |
Openvas Openvas Manager | =5.0.0-beta9 | |
Openvas Openvas Manager | =5.0.1 | |
Openvas Openvas Manager | =5.0.2 | |
Openvas Openvas Manager | =5.0.3 | |
Openvas Openvas Manager | =5.0.4 | |
Openvas Openvas Manager | =5.0.5 | |
Openvas Openvas Manager | =5.0.6 | |
openSUSE openSUSE | =13.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.