First published: Fri Oct 07 2022(Updated: )
B.C. Institute of Technology CodeIgniter <=3.1.13 is vulnerable to SQL Injection via system\database\DB_query_builder.php or_having() function.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Codeigniter Codeigniter | >=3.0<=3.1.13 | |
Codeigniter Codeigniter | =3.0 | |
Codeigniter Codeigniter | =3.0-rc | |
Codeigniter Codeigniter | =3.0-rc2 | |
Codeigniter Codeigniter | =3.0-rc3 | |
>=3.0<=3.1.13 | ||
=3.0 | ||
=3.0-rc | ||
=3.0-rc2 | ||
=3.0-rc3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2022-40826.
The title of the vulnerability is 'B.C. Institute of Technology CodeIgniter <=3.1.13 is vulnerable to SQL Injection via system\database\DB_query_builder.php or_having() function.'
The severity of CVE-2022-40826 is critical.
Codeigniter versions <=3.1.13 are affected by CVE-2022-40826.
Update Codeigniter to a version higher than 3.1.13 to fix CVE-2022-40826.