CVE-2014-1945
SQL injection vulnerability in ajax_udf.php in OpenDocMan before 1.2.7.2 allows remote attackers to execute arbitrary SQL commands via the add_value parameter.
Ver en NVDSeveridad
N/A
EPSS
Probabilidad de explotación (próx. 30 días): 0.0058 (0.6%)
Percentil: 68.9%
EPSS: 2026-05-06
Afecta
opendocman:opendocmanDescripción técnica
SQL injection vulnerability in ajax_udf.php in OpenDocMan before 1.2.7.2 allows remote attackers to execute arbitrary SQL commands via the add_value parameter.
Publicada: 9/3/2014, 13:16:57
Última modificación: 6/5/2026, 22:30:45
Referencias
- http://secunia.com/advisories/56189
- http://www.opendocman.com/opendocman-v1-2-7-1-release
- http://www.opendocman.com/opendocman-v1-2-7-2-released
- http://www.securityfocus.com/bid/65775
- https://www.htbridge.com/advisory/HTB23202
- http://secunia.com/advisories/56189
- http://www.opendocman.com/opendocman-v1-2-7-1-release
- http://www.opendocman.com/opendocman-v1-2-7-2-released