GoGits Gogs 'label' Parameter SQL Injection Vulnerability
BID:71188
Info
GoGits Gogs 'label' Parameter SQL Injection Vulnerability
| Bugtraq ID: | 71188 |
| Class: | Input Validation Error |
| CVE: |
CVE-2014-8681 |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 14 2014 12:00AM |
| Updated: | Nov 14 2014 12:00AM |
| Credit: | Timo Schmid |
| Vulnerable: |
GoGits Gogs 0.5.6.1024-gf1d8746 GoGits Gogs 0.3.1-9-g49dc57e |
| Not Vulnerable: |
GoGits Gogs 0.5.6.1025 |
References
GoGits Gogs 'label' Parameter SQL Injection Vulnerability
References:
References:
- Blind SQL Injection in Gogs label search (Timo Schmid)
- Gogs Homepage (GoGits)