HIGH
SQL injection vulnerability in hitCode hitAppoint 4.5.17 and possibly earlier allows remote attackers to execute arbitrary SQL commands via the username parameter to index.php
Published Dec 30, 2011
7.5
HIGHCVSS 2.0
EPSS 1.10%
Description
SQL injection vulnerability in hitCode hitAppoint 4.5.17 and possibly earlier allows remote attackers to execute arbitrary SQL commands via the username parameter to index.php. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Affected products
No data.
OR
- ≤ 4.5.17
- 4.0
- 4.0.9
- 4.0.10
- 4.0.11
- 4.0.12
- 4.0.13
- 4.0.14
- 4.0.15
- 4.0.16
- 4.0.17
- 4.1.0
- 4.1.1
- 4.1.2
- 4.1.3
- 4.1.4
- 4.2.0
- 4.2.1
- 4.2.2
- 4.2.3
- 4.2.4
- 4.2.5
- 4.2.6
- 4.3.0
- 4.3.1
- 4.3.2
- 4.3.3
- 4.3.4
- 4.3.5
- 4.4.0
- 4.4.1
- 4.4.2
- 4.4.3
- 4.4.4
- 4.4.5
- 4.4.6
- 4.4.7
- 4.4.8
- 4.4.9
- 4.4.10
- 4.5.
- 4.5.1
- 4.5.2
- 4.5.3
- 4.5.4
- 4.5.5
- 4.5.6
- 4.5.7
- 4.5.8
- 4.5.9
- 4.5.10
- 4.5.11
- 4.5.12
- 4.5.13
- 4.5.14
- 4.5.15
- 4.5.16
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (3)
- http://secunia.com/advisories/47140 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://www.osvdb.org/77580 vdb-entryx_refsource_OSVDB
- https://exchange.xforce.ibmcloud.com/vulnerabilities/71740 vdb-entryx_refsource_XF
| Link | Providers | Tags |
|---|---|---|
| http://secunia.com/advisories/47140 | third-party-advisoryx_refsource_SECUNIAVendor Advisory | |
| http://www.osvdb.org/77580 | vdb-entryx_refsource_OSVDB | |
| https://exchange.xforce.ibmcloud.com/vulnerabilities/71740 | vdb-entryx_refsource_XF |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Dec 30, 2011
Updated Aug 7, 2024
Reserved Dec 30, 2011
Link CVE-2011-5038
CISA Vulnrichment
Updated n/a