Lucene search

K
osvGoogleOSV:DSA-1389-1
HistoryOct 18, 2007 - 12:00 a.m.

zoph - SQL injection

2007-10-1800:00:00
Google
osv.dev
6

EPSS

0.01

Percentile

83.6%

It was discovered that zoph, a web based photo management system,
performs insufficient input sanitising, which allows SQL injection.

For the oldstable distribution (sarge) this problem has been fixed in
version 0.3.3-12sarge3.

For the stable distribution (etch) this problem has been fixed in
version 0.6-2.1etch1.

For the unstable distribution (sid) this problem has been fixed in
version 0.7.0.2-1.

We recommend that you upgrade your zoph package.