CVE-2013-4789
Published Aug 9, 2013
Last updated 11 years ago
Overview
- Description
- SQL injection vulnerability in modules/rss/rss.php in Cotonti before 0.9.14 allows remote attackers to execute arbitrary SQL commands via the "c" parameter to index.php.
- Source
- cve@mitre.org
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 7.5
- Impact score
- 6.4
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:P/I:P/A:P
Weaknesses
- nvd@nist.gov
- CWE-89
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:cotonti:cotonti_siena:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "78061E6B-C756-4C40-8F4C-3B4A70E5AC2B", "versionEndIncluding": "0.9.13" }, { "criteria": "cpe:2.3:a:cotonti:cotonti_siena:0.9.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "23269789-CF52-4DC9-807E-F5E04F63B8CB" }, { "criteria": "cpe:2.3:a:cotonti:cotonti_siena:0.9.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "16E15464-62D4-4504-8252-990D8F3FDFA7" }, { "criteria": "cpe:2.3:a:cotonti:cotonti_siena:0.9.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9272E568-A979-49B4-A84C-647029C0DC7C" }, { "criteria": "cpe:2.3:a:cotonti:cotonti_siena:0.9.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E1313F58-D87B-4A82-B7EE-FDE22C2FF4A6" }, { "criteria": "cpe:2.3:a:cotonti:cotonti_siena:0.9.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9CE837A2-35AD-448F-8347-BFE35E051160" }, { "criteria": "cpe:2.3:a:cotonti:cotonti_siena:0.9.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C4670284-CC4A-45E5-B4F3-FC42DECF07B7" }, { "criteria": "cpe:2.3:a:cotonti:cotonti_siena:0.9.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2FA41BB6-A5B5-4774-B024-2722D48482E8" }, { "criteria": "cpe:2.3:a:cotonti:cotonti_siena:0.9.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "183420F5-66A6-4FEB-BAB5-2D9CF3AA00C9" }, { "criteria": "cpe:2.3:a:cotonti:cotonti_siena:0.9.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C2E37B27-53E3-4B8C-A781-4DF50DAE2838" }, { "criteria": "cpe:2.3:a:cotonti:cotonti_siena:0.9.9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EB21A94A-38C8-447C-BB3C-736D6A2E2EDF" }, { "criteria": "cpe:2.3:a:cotonti:cotonti_siena:0.9.10:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4E55928F-E10F-4DCE-B2C9-747F16ED9D74" }, { "criteria": "cpe:2.3:a:cotonti:cotonti_siena:0.9.11:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D0B86485-BEB5-40A3-AF00-DA63FC04C6D3" }, { "criteria": "cpe:2.3:a:cotonti:cotonti_siena:0.9.12:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C9A8DA4E-18A1-438F-A776-182C587B06C6" } ], "operator": "OR" } ] } ]