CVE-2014-9220
03.12.2014, 01:59
SQL injection vulnerability in OpenVAS Manager before 4.0.6 and 5.x before 5.0.7 allows remote attackers to execute arbitrary SQL commands via the timezone parameter in a modify_schedule OMP command.
Vendor | Product | Version |
---|---|---|
openvas | openvas_manager | 𝑥 ≤ 4.0.5 |
openvas | openvas_manager | 5.0.0 |
openvas | openvas_manager | 5.0.0:beta1 |
openvas | openvas_manager | 5.0.0:beta10 |
openvas | openvas_manager | 5.0.0:beta11 |
openvas | openvas_manager | 5.0.0:beta12 |
openvas | openvas_manager | 5.0.0:beta13 |
openvas | openvas_manager | 5.0.0:beta2 |
openvas | openvas_manager | 5.0.0:beta3 |
openvas | openvas_manager | 5.0.0:beta4 |
openvas | openvas_manager | 5.0.0:beta5 |
openvas | openvas_manager | 5.0.0:beta6 |
openvas | openvas_manager | 5.0.0:beta7 |
openvas | openvas_manager | 5.0.0:beta8 |
openvas | openvas_manager | 5.0.0:beta9 |
openvas | openvas_manager | 5.0.1 |
openvas | openvas_manager | 5.0.2 |
openvas | openvas_manager | 5.0.3 |
openvas | openvas_manager | 5.0.4 |
openvas | openvas_manager | 5.0.5 |
openvas | openvas_manager | 5.0.6 |
opensuse | opensuse | 13.2 |
𝑥
= Vulnerable software versions
References