Início
Início
Tendências
Tendências
Vulnerabilidades
Vulnerabilidades
Notícias
Notícias
Pesquisadores
Pesquisadores
Por que dbugs?
Por que dbugs?
Configurações

Cassiano Dal Pizzol

#36819de 56,334
7.5CVSS total
Vulnerabilidades · 1
PT-2017-5934
7.5
2014-08-05
Zend · Zend Framework · CVE-2014-4914
Name of the Vulnerable Software and Affected Versions: Zend Framework versions prior to 1.12.7 Description: The issue concerns the Zend Db Select::order function, which does not properly handle parentheses. This allows remote attackers to conduct SQL injection attacks via unspecified vectors. Recommendations: For versions prior to 1.12.7, update to version 1.12.7 or later to resolve the issue.