CVE-2011-5276

SQL injection vulnerability in the drawAdminTools_PackageInstaller function in shared/inc/forms/packager.php in Domain Technologie Control (DTC) before 0.32.11 allows remote authenticated users to execute arbitrary SQL commands via the database_name parameter.
SQL Injection
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
6.5 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:S/C:P/I:P/A:P
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 55%
VendorProductVersion
gplhostdomain_technologie_control
𝑥
≤ 0.32.7
gplhostdomain_technologie_control
0.24.6
gplhostdomain_technologie_control
0.25.1
gplhostdomain_technologie_control
0.25.2
gplhostdomain_technologie_control
0.25.3
gplhostdomain_technologie_control
0.26.7
gplhostdomain_technologie_control
0.26.8
gplhostdomain_technologie_control
0.26.9
gplhostdomain_technologie_control
0.27.3
gplhostdomain_technologie_control
0.28.2
gplhostdomain_technologie_control
0.28.3
gplhostdomain_technologie_control
0.28.4
gplhostdomain_technologie_control
0.28.6
gplhostdomain_technologie_control
0.28.9
gplhostdomain_technologie_control
0.28.10
gplhostdomain_technologie_control
0.29.1
gplhostdomain_technologie_control
0.29.6
gplhostdomain_technologie_control
0.29.8
gplhostdomain_technologie_control
0.29.10
gplhostdomain_technologie_control
0.29.14
gplhostdomain_technologie_control
0.29.15
gplhostdomain_technologie_control
0.29.16
gplhostdomain_technologie_control
0.29.17
gplhostdomain_technologie_control
0.30.6
gplhostdomain_technologie_control
0.30.8
gplhostdomain_technologie_control
0.30.10
gplhostdomain_technologie_control
0.30.18
gplhostdomain_technologie_control
0.30.20
gplhostdomain_technologie_control
0.32.1
gplhostdomain_technologie_control
0.32.2
gplhostdomain_technologie_control
0.32.3
gplhostdomain_technologie_control
0.32.4
gplhostdomain_technologie_control
0.32.5
gplhostdomain_technologie_control
0.32.6
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
dtc
saucy
dne
quantal
dne
precise
dne
lucid
ignored