Lucene search

K
prionPRIOn knowledge basePRION:CVE-2016-4861
HistoryFeb 17, 2017 - 2:59 a.m.

Sql injection

2017-02-1702:59:00
PRIOn knowledge base
www.prio-n.com
3

8.1 High

AI Score

Confidence

Low

0.009 Low

EPSS

Percentile

82.7%

The (1) order and (2) group methods in Zend_Db_Select in the Zend Framework before 1.12.20 might allow remote attackers to conduct SQL injection attacks by leveraging failure to remove comments from an SQL statement before validation.

CPENameOperatorVersion
fedoraeq25
fedoraeq24
fedoraeq23
zend_frameworkle1.12.19

8.1 High

AI Score

Confidence

Low

0.009 Low

EPSS

Percentile

82.7%