Lucene search

K
cve[email protected]CVE-2013-4422
HistoryOct 23, 2013 - 4:54 p.m.

CVE-2013-4422

2013-10-2316:54:28
CWE-89
web.nvd.nist.gov
45
cve
2013
4422
sql injection
quassel irc
postgresql
nvd

6.8 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

8.2 High

AI Score

Confidence

Low

0.004 Low

EPSS

Percentile

72.4%

SQL injection vulnerability in Quassel IRC before 0.9.1, when Qt 4.8.5 or later and PostgreSQL 8.2 or later are used, allows remote attackers to execute arbitrary SQL commands via a \ (backslash) in a message.

Affected configurations

NVD
Node
quassel-ircquassel_ircRange0.9.0
OR
quassel-ircquassel_ircMatch0.1.0
OR
quassel-ircquassel_ircMatch0.3.0
OR
quassel-ircquassel_ircMatch0.3.0.1
OR
quassel-ircquassel_ircMatch0.3.0.2
OR
quassel-ircquassel_ircMatch0.3.0.3
OR
quassel-ircquassel_ircMatch0.3.1
OR
quassel-ircquassel_ircMatch0.4.0
OR
quassel-ircquassel_ircMatch0.4.1
OR
quassel-ircquassel_ircMatch0.4.2
OR
quassel-ircquassel_ircMatch0.4.3
OR
quassel-ircquassel_ircMatch0.5.0
OR
quassel-ircquassel_ircMatch0.6.1
OR
quassel-ircquassel_ircMatch0.6.2
OR
quassel-ircquassel_ircMatch0.6.3
OR
quassel-ircquassel_ircMatch0.7.0
OR
quassel-ircquassel_ircMatch0.7.1
OR
quassel-ircquassel_ircMatch0.7.2
OR
quassel-ircquassel_ircMatch0.7.3
OR
quassel-ircquassel_ircMatch0.7.4
OR
quassel-ircquassel_ircMatch0.8.0
AND
postgresqlpostgresqlMatch8.2
OR
postgresqlpostgresqlMatch8.2.1
OR
postgresqlpostgresqlMatch8.2.2
OR
postgresqlpostgresqlMatch8.2.3
OR
postgresqlpostgresqlMatch8.2.4
OR
postgresqlpostgresqlMatch8.2.5
OR
postgresqlpostgresqlMatch8.2.6
OR
postgresqlpostgresqlMatch8.2.7
OR
postgresqlpostgresqlMatch8.2.8
OR
postgresqlpostgresqlMatch8.2.9
OR
postgresqlpostgresqlMatch8.2.10
OR
postgresqlpostgresqlMatch8.2.11
OR
postgresqlpostgresqlMatch8.2.12
OR
postgresqlpostgresqlMatch8.2.13
OR
postgresqlpostgresqlMatch8.2.14
OR
postgresqlpostgresqlMatch8.2.15
OR
postgresqlpostgresqlMatch8.2.16
OR
postgresqlpostgresqlMatch8.2.17
OR
postgresqlpostgresqlMatch8.2.18
OR
postgresqlpostgresqlMatch8.3
OR
postgresqlpostgresqlMatch8.3.1
OR
postgresqlpostgresqlMatch8.3.2
OR
postgresqlpostgresqlMatch8.3.3
OR
postgresqlpostgresqlMatch8.3.4
OR
postgresqlpostgresqlMatch8.3.5
OR
postgresqlpostgresqlMatch8.3.6
OR
postgresqlpostgresqlMatch8.3.7
OR
postgresqlpostgresqlMatch8.3.8
OR
postgresqlpostgresqlMatch8.3.9
OR
postgresqlpostgresqlMatch8.3.10
OR
postgresqlpostgresqlMatch8.3.11
OR
postgresqlpostgresqlMatch8.3.12
OR
postgresqlpostgresqlMatch8.3.13
OR
postgresqlpostgresqlMatch8.3.14
OR
postgresqlpostgresqlMatch8.3.15
OR
postgresqlpostgresqlMatch8.3.16
OR
postgresqlpostgresqlMatch8.3.17
OR
postgresqlpostgresqlMatch8.3.18
OR
postgresqlpostgresqlMatch8.3.19
OR
postgresqlpostgresqlMatch8.3.20
OR
postgresqlpostgresqlMatch8.3.21
OR
postgresqlpostgresqlMatch8.3.22
OR
postgresqlpostgresqlMatch8.4
OR
postgresqlpostgresqlMatch8.4.1
OR
postgresqlpostgresqlMatch8.4.2
OR
postgresqlpostgresqlMatch8.4.3
OR
postgresqlpostgresqlMatch8.4.4
OR
postgresqlpostgresqlMatch8.4.5
OR
postgresqlpostgresqlMatch8.4.6
OR
postgresqlpostgresqlMatch8.4.7
OR
postgresqlpostgresqlMatch8.4.8
OR
postgresqlpostgresqlMatch8.4.9
OR
postgresqlpostgresqlMatch8.4.10
OR
postgresqlpostgresqlMatch8.4.11
OR
postgresqlpostgresqlMatch8.4.12
OR
postgresqlpostgresqlMatch8.4.13
OR
postgresqlpostgresqlMatch8.4.14
OR
postgresqlpostgresqlMatch8.4.15
OR
postgresqlpostgresqlMatch8.4.16
OR
postgresqlpostgresqlMatch9.0
OR
postgresqlpostgresqlMatch9.0.1
OR
postgresqlpostgresqlMatch9.0.2
OR
postgresqlpostgresqlMatch9.0.3
OR
postgresqlpostgresqlMatch9.0.4
OR
postgresqlpostgresqlMatch9.0.5
OR
postgresqlpostgresqlMatch9.0.6
OR
postgresqlpostgresqlMatch9.0.7
OR
postgresqlpostgresqlMatch9.0.8
OR
postgresqlpostgresqlMatch9.0.9
OR
postgresqlpostgresqlMatch9.0.10
OR
postgresqlpostgresqlMatch9.0.11
OR
postgresqlpostgresqlMatch9.0.12
OR
postgresqlpostgresqlMatch9.1
OR
postgresqlpostgresqlMatch9.1.1
OR
postgresqlpostgresqlMatch9.1.2
OR
postgresqlpostgresqlMatch9.1.3
OR
postgresqlpostgresqlMatch9.1.4
OR
postgresqlpostgresqlMatch9.1.5
OR
postgresqlpostgresqlMatch9.1.6
OR
postgresqlpostgresqlMatch9.1.7
OR
postgresqlpostgresqlMatch9.1.8
OR
postgresqlpostgresqlMatch9.2
OR
postgresqlpostgresqlMatch9.2.1
OR
postgresqlpostgresqlMatch9.2.2
OR
postgresqlpostgresqlMatch9.2.3
Node
quassel-ircquassel_ircRange0.9.0
OR
quassel-ircquassel_ircMatch0.1.0
OR
quassel-ircquassel_ircMatch0.3.0
OR
quassel-ircquassel_ircMatch0.3.0.1
OR
quassel-ircquassel_ircMatch0.3.0.2
OR
quassel-ircquassel_ircMatch0.3.0.3
OR
quassel-ircquassel_ircMatch0.3.1
OR
quassel-ircquassel_ircMatch0.4.0
OR
quassel-ircquassel_ircMatch0.4.1
OR
quassel-ircquassel_ircMatch0.4.2
OR
quassel-ircquassel_ircMatch0.4.3
OR
quassel-ircquassel_ircMatch0.5.0
OR
quassel-ircquassel_ircMatch0.6.1
OR
quassel-ircquassel_ircMatch0.6.2
OR
quassel-ircquassel_ircMatch0.6.3
OR
quassel-ircquassel_ircMatch0.7.0
OR
quassel-ircquassel_ircMatch0.7.1
OR
quassel-ircquassel_ircMatch0.7.2
OR
quassel-ircquassel_ircMatch0.7.3
OR
quassel-ircquassel_ircMatch0.7.4
OR
quassel-ircquassel_ircMatch0.8.0
AND
qtqtMatch4.8.5
OR
qtqtMatch5.0.0
OR
qtqtMatch5.0.1

6.8 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

8.2 High

AI Score

Confidence

Low

0.004 Low

EPSS

Percentile

72.4%