CVE-2022-35193: SQL Injection
Published Sep 16, 2022
·Updated
TestLink v1.9.20 was discovered to contain a SQL injection vulnerability via /lib/execute/execNavigator.php.
Affected Software
1 affected component
TestLink TestLink=1.9.20
Event History
Sep 16, 2022
CVE Published
via MITRE·03:59 PM
Data Sourced
via MITRE·03:59 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2022-35193?
CVE-2022-35193 is classified as a high severity vulnerability due to its potential impact on data integrity and application security.
2
How do I fix CVE-2022-35193?
To fix CVE-2022-35193, update your TestLink installation to a patched version that addresses the SQL injection vulnerability.
3
What components are affected by CVE-2022-35193?
CVE-2022-35193 specifically affects TestLink version 1.9.20.
4
What kind of attack can exploit CVE-2022-35193?
CVE-2022-35193 can be exploited by attackers using SQL injection techniques to manipulate or access sensitive database information.
5
Is CVE-2022-35193 easily exploitable?
Yes, CVE-2022-35193 is considered to be easily exploitable, especially if proper security measures are not in place.