CVE-2014-125040

CVSS V2 None CVSS V3 None
Description
A vulnerability was found in stevejagodzinski DevNewsAggregator. It has been rated as critical. Affected by this issue is the function getByName of the file php/data_access/RemoteHtmlContentDataAccess.php. The manipulation of the argument name leads to sql injection. The name of the patch is b9de907e7a8c9ca9d75295da675e58c5bf06b172. It is recommended to apply a patch to fix this issue. The identifier of this vulnerability is VDB-217484.
Overview
  • CVE ID
  • CVE-2014-125040
  • Assigner
  • cna@vuldb.com
  • Vulnerability Status
  • Analyzed
  • Published Version
  • 2023-01-05T14:15:08
  • Last Modified Date
  • 2023-01-11T20:01:23
CPE Configuration (Product)
CPE Vulnerable Operator Version Start Version End
cpe:2.3:a:devnewsaggregator_project:devnewsaggregator:*:*:*:*:*:*:*:* 1 OR 2014-11-30
History
Created Old Value New Value Data Type Notes
2023-01-05 14:15:46 Added to TrackCVE
2023-01-05 14:15:47 Weakness Enumeration new
2023-01-05 15:16:56 2023-01-05T14:18:24 CVE Modified Date updated
2023-01-05 15:16:56 Received Awaiting Analysis Vulnerability Status updated
2023-01-05 15:16:57 CVSS V3 information new
2023-01-05 15:16:57 CVSS V2 information new
2023-01-10 17:18:09 Awaiting Analysis Undergoing Analysis Vulnerability Status updated
2023-01-10 17:18:09 CVSS V3 information new
2023-01-10 17:18:09 CVSS V2 information new
2023-01-12 05:15:52 2023-01-11T20:01:23 CVE Modified Date updated
2023-01-12 05:15:52 Undergoing Analysis Analyzed Vulnerability Status updated
2023-01-12 05:15:56 CPE Information updated
2023-01-12 05:15:56 CVSS V3 information new
2023-01-12 05:15:56 CVSS V2 information new