CVE-2013-6872
21.01.2014, 15:17
SQL injection vulnerability in managetimetracker.php in Collabtive before 1.2 allows remote authenticated users to execute arbitrary SQL commands via the id parameter in a projectpdf action.
Vendor | Product | Version |
---|---|---|
o-dyn | collabtive | 𝑥 ≤ 1.1 |
o-dyn | collabtive | 0.1 |
o-dyn | collabtive | 0.2 |
o-dyn | collabtive | 0.2.5 |
o-dyn | collabtive | 0.3 |
o-dyn | collabtive | 0.3.5 |
o-dyn | collabtive | 0.3.6 |
o-dyn | collabtive | 0.4 |
o-dyn | collabtive | 0.4.5 |
o-dyn | collabtive | 0.4.6 |
o-dyn | collabtive | 0.4.7 |
o-dyn | collabtive | 0.4.8 |
o-dyn | collabtive | 0.4.9 |
o-dyn | collabtive | 0.4.9.1 |
o-dyn | collabtive | 0.5.1 |
o-dyn | collabtive | 0.5.5 |
o-dyn | collabtive | 0.6 |
o-dyn | collabtive | 0.6.1 |
o-dyn | collabtive | 0.6.2 |
o-dyn | collabtive | 0.6.3 |
o-dyn | collabtive | 0.6.4 |
o-dyn | collabtive | 0.6.5 |
o-dyn | collabtive | 0.7 |
o-dyn | collabtive | 0.7.5 |
o-dyn | collabtive | 0.7.6 |
o-dyn | collabtive | 1.0 |
𝑥
= Vulnerable software versions

Ubuntu Releases
References