CVE-2005-3074
Published Sep 27, 2005
Last updated 16 years ago
Overview
- Description
- SQL injection vulnerability in rsyslogd in RSyslog before 1.0.1 and before 1.10.1 allows remote attackers to execute arbitrary SQL commands via crafted syslog messages.
- Source
- cve@mitre.org
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 7.5
- Impact score
- 6.4
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:P/I:P/A:P
Weaknesses
- nvd@nist.gov
- NVD-CWE-Other
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:rsyslog:rsyslogd:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "704E4B17-DEC5-4BBB-AD88-436309F308B0", "versionEndIncluding": "1.0.1_stable" }, { "criteria": "cpe:2.3:a:rsyslog:rsyslogd:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "327A1C97-DCDF-4C5B-802A-D428AF71048C", "versionEndIncluding": "1.10.1_development" }, { "criteria": "cpe:2.3:a:rsyslog:rsyslogd:0.8.0_stable:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "10972C30-E2E7-44A1-AD77-6089C4B3DC66" }, { "criteria": "cpe:2.3:a:rsyslog:rsyslogd:0.8.1_stable:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F790335E-0251-40E0-8733-FE292E0F46F1" }, { "criteria": "cpe:2.3:a:rsyslog:rsyslogd:0.8.2_stable:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0225F1DA-A546-49F9-BB74-9C16495C735A" }, { "criteria": "cpe:2.3:a:rsyslog:rsyslogd:0.8.3_stable:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DCC7AC67-3E04-411A-A56F-FE228906285C" }, { "criteria": "cpe:2.3:a:rsyslog:rsyslogd:0.8.4_stable:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D0456DCB-8D6E-43B4-A3C9-E742CF6062A0" }, { "criteria": "cpe:2.3:a:rsyslog:rsyslogd:0.9.0_stable:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DD71DF4B-FB43-4DFC-B1E6-3D88885A3E50" }, { "criteria": "cpe:2.3:a:rsyslog:rsyslogd:0.9.1_stable:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C9ED1573-D871-489E-BA95-3C9366E42844" }, { "criteria": "cpe:2.3:a:rsyslog:rsyslogd:0.9.2_stable:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "75D36B48-D5E2-4FB1-9281-E2701052B3A2" }, { "criteria": "cpe:2.3:a:rsyslog:rsyslogd:0.9.3_stable:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4B16A75D-4D20-43C8-9EE5-D7FCE1571B07" }, { "criteria": "cpe:2.3:a:rsyslog:rsyslogd:0.9.4_stable:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7452394A-731E-473D-AD8C-369D9ADC9122" }, { "criteria": "cpe:2.3:a:rsyslog:rsyslogd:0.9.5_stable:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E4A28917-C43A-4A10-BFE2-F3D602660D80" }, { "criteria": "cpe:2.3:a:rsyslog:rsyslogd:0.9.6_stable:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A3E09137-34B5-4674-8FB3-25114A13E569" }, { "criteria": "cpe:2.3:a:rsyslog:rsyslogd:0.9.7_stable:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "92CD7FE3-F6D0-4B89-BF77-EA9CEB001D26" }, { "criteria": "cpe:2.3:a:rsyslog:rsyslogd:0.9.8_stable:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "350E596D-D26A-40A5-B3EF-700270F174C0" }, { "criteria": "cpe:2.3:a:rsyslog:rsyslogd:1.0.0_stable:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D6457AEF-3CA8-4F03-AC40-68B6B827DC93" } ], "operator": "OR" } ] } ]