CVE-2011-2703
01.08.2011, 19:55
Multiple SQL injection vulnerabilities in MapServer before 4.10.7, 5.x before 5.6.7, and 6.x before 6.0.1 allow remote attackers to execute arbitrary SQL commands via vectors related to (1) OGC filter encoding or (2) WMS time support.
| Vendor | Product | Version |
|---|---|---|
| osgeo | mapserver | 𝑥 ≤ 4.10.6 |
| osgeo | mapserver | 4.2.0:beta1 |
| osgeo | mapserver | 4.4.0 |
| osgeo | mapserver | 4.4.0:beta1 |
| osgeo | mapserver | 4.4.0:beta2 |
| osgeo | mapserver | 4.4.0:beta3 |
| osgeo | mapserver | 4.6.0 |
| osgeo | mapserver | 4.6.0:beta1 |
| osgeo | mapserver | 4.6.0:beta2 |
| osgeo | mapserver | 4.6.0:beta3 |
| osgeo | mapserver | 4.6.0:rc1 |
| osgeo | mapserver | 4.8.0:beta1 |
| osgeo | mapserver | 4.8.0:beta2 |
| osgeo | mapserver | 4.8.0:beta3 |
| osgeo | mapserver | 4.8.0:rc1 |
| osgeo | mapserver | 4.8.0:rc2 |
| osgeo | mapserver | 4.10.0 |
| osgeo | mapserver | 4.10.0:beta1 |
| osgeo | mapserver | 4.10.0:beta2 |
| osgeo | mapserver | 4.10.0:beta3 |
| osgeo | mapserver | 4.10.0:rc1 |
| osgeo | mapserver | 4.10.1 |
| osgeo | mapserver | 4.10.2 |
| osgeo | mapserver | 4.10.3 |
| osgeo | mapserver | 4.10.4 |
| osgeo | mapserver | 4.10.5 |
| osgeo | mapserver | 5.0.0 |
| osgeo | mapserver | 5.0.0:beta1 |
| osgeo | mapserver | 5.0.0:beta2 |
| osgeo | mapserver | 5.0.0:beta3 |
| osgeo | mapserver | 5.0.0:beta4 |
| osgeo | mapserver | 5.0.0:beta5 |
| osgeo | mapserver | 5.0.0:beta6 |
| osgeo | mapserver | 5.0.0:rc1 |
| osgeo | mapserver | 5.0.0:rc2 |
| osgeo | mapserver | 5.2.0 |
| osgeo | mapserver | 5.2.0:beta1 |
| osgeo | mapserver | 5.2.0:beta2 |
| osgeo | mapserver | 5.2.0:beta3 |
| osgeo | mapserver | 5.2.0:beta4 |
| osgeo | mapserver | 5.2.0:rc1 |
| osgeo | mapserver | 5.2.1 |
| osgeo | mapserver | 5.4.0 |
| osgeo | mapserver | 5.4.0:beta1 |
| osgeo | mapserver | 5.4.0:beta2 |
| osgeo | mapserver | 5.4.0:beta3 |
| osgeo | mapserver | 5.4.0:beta4 |
| osgeo | mapserver | 5.4.0:rc1 |
| osgeo | mapserver | 5.4.0:rc2 |
| osgeo | mapserver | 5.4.1 |
| osgeo | mapserver | 5.4.2 |
| osgeo | mapserver | 5.6.0 |
| osgeo | mapserver | 5.6.1 |
| osgeo | mapserver | 5.6.3 |
| umn | mapserver | 5.2.2 |
| umn | mapserver | 5.2.3 |
| umn | mapserver | 5.6.4 |
| umn | mapserver | 5.6.5 |
| umn | mapserver | 5.6.6 |
| umn | mapserver | 6.0.0 |
| umn | mapserver | 6.0.0:beta1 |
| umn | mapserver | 6.0.0:beta2 |
| umn | mapserver | 6.0.0:beta3 |
| umn | mapserver | 6.0.0:beta4 |
| umn | mapserver | 6.0.0:beta5 |
| umn | mapserver | 6.0.0:beta6 |
| umn | mapserver | 6.0.0:beta7 |
| umn | mapserver | 6.0.0:rc1 |
| umn | mapserver | 6.0.0:rc2 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
References