CVE-2018-7466
25.02.2018, 07:29
install/installNewDB.php in TestLink through 1.9.16 allows remote attackers to conduct injection attacks by leveraging control over DB LOGIN NAMES data during installation to provide a long, crafted value.
Vendor | Product | Version |
---|---|---|
testlink | testlink | 𝑥 ≤ 1.9.16 |
𝑥
= Vulnerable software versions
References