CVE-2019-8979
EUVD-2019-1836621.02.2019, 05:29
Kohana through 3.3.6 has SQL Injection when the order_by() parameter can be controlled.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| kohanaframework | kohana | 𝑥 ≤ 3.3.6 |
𝑥
= Vulnerable software versions
Kohana through 3.3.6 has SQL Injection when the order_by() parameter can be controlled.
| Vendor | Product | Version |
|---|---|---|
| kohanaframework | kohana | 𝑥 ≤ 3.3.6 |