Lucene search

K
osvGoogleOSV:CVE-2019-3792
HistoryApr 01, 2019 - 9:30 p.m.

CVE-2019-3792

2019-04-0121:30:43
Google
osv.dev
4

AI Score

8.1

Confidence

Low

EPSS

0.001

Percentile

47.2%

Pivotal Concourse version 5.0.0, contains an API that is vulnerable to SQL injection. An Concourse resource can craft a version identifier that can carry a SQL injection payload to the Concourse server, allowing the attacker to read privileged data.

AI Score

8.1

Confidence

Low

EPSS

0.001

Percentile

47.2%

Related for OSV:CVE-2019-3792