CVE-2008-0920
22.02.2008, 23:44
SQL injection vulnerability in port/modifyportform.php in Open Source Security Information Management (OSSIM) 0.9.9 rc5 allows remote authenticated users to execute arbitrary SQL commands via the portname parameter, which is not properly handled by a validation regular expression.
Vendor | Product | Version |
---|---|---|
open_source_security_information_management | os-sim | 𝑥 ≤ 0.9.9 |
𝑥
= Vulnerable software versions
References