HIGH
SQL injection vulnerability in CPDB in application/controllers/admin/participantsaction.php in LimeSurvey 2.05+ Build 140618 allows remote attackers to execute arbitrary SQL commands via the sidx parameter in a JSON request to admin/participants/sa/getParticipants_json, related to a search parameter
Published Jul 21, 2014
7.5
HIGHCVSS 2.0
EPSS 1.90%
Description
Affected products
Remediation
Metrics
References (2)
Change history (0)
No recorded changes yet.