CVE-2011-4959
published 2012-09-17CVE-2011-4959: SQL injection vulnerability in the addslashes method in SilverStripe 2.3.x before 2.3.12 and 2.4.x before 2.4.6, when connected to a MySQL database using far…
PriorityP339medium6.8CVSS 2.0
AVNACMAuNCPIPAP
EPSS
1.45%
70.1th percentile
SQL injection vulnerability in the addslashes method in SilverStripe 2.3.x before 2.3.12 and 2.4.x before 2.4.6, when connected to a MySQL database using far east character encodings, allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
Affected
18 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| silverstripe | silverstripe | — | — |
| silverstripe | silverstripe | — | — |
| silverstripe | silverstripe | — | — |
| silverstripe | silverstripe | — | — |
| silverstripe | silverstripe | — | — |
| silverstripe | silverstripe | — | — |
| silverstripe | silverstripe | — | — |
| silverstripe | silverstripe | — | — |
| silverstripe | silverstripe | — | — |
| silverstripe | silverstripe | — | — |
| silverstripe | silverstripe | — | — |
| silverstripe | silverstripe | — | — |
| silverstripe | silverstripe | — | — |
| silverstripe | silverstripe | — | — |
| silverstripe | silverstripe | — | — |
| silverstripe | silverstripe | — | — |
| silverstripe | silverstripe | — | — |
| silverstripe | silverstripe | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://doc.silverstripe.org/framework/en/trunk/changelogs/2.3.12http://doc.silverstripe.org/framework/en/trunk/changelogs/2.4.6http://www.openwall.com/lists/oss-security/2012/04/30/1http://www.openwall.com/lists/oss-security/2012/04/30/3https://github.com/silverstripe/sapphire/commit/73cca09https://github.com/silverstripe/sapphire/commit/ca78784https://github.com/silverstripe/silverstripe-cms/commit/b5ea2f6http://doc.silverstripe.org/framework/en/trunk/changelogs/2.3.12http://doc.silverstripe.org/framework/en/trunk/changelogs/2.4.6http://www.openwall.com/lists/oss-security/2012/04/30/1http://www.openwall.com/lists/oss-security/2012/04/30/3https://github.com/silverstripe/sapphire/commit/73cca09https://github.com/silverstripe/sapphire/commit/ca78784https://github.com/silverstripe/silverstripe-cms/commit/b5ea2f6
2012-09-17
Published