Listed below are 10 of the newest known vulnerabilities associated with the software "Sql-ledger" by "Sql-ledger".

These CVEs are retrieved based on exact matches on listed software and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.

Data on known vulnerable versions is also displayed based on information from known CPEs

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2017-2808 An exploitable use-after-free vulnerability exists in the account parsing component of the Ledger-CLI 3.1.1. A specially craf... 7.5 - High 2017-09-05 2022-04-19
CVE-2017-2807 An exploitable buffer overflow vulnerability exists in the tag parsing functionality of Ledger-CLI 3.1.1. A specially crafted... 7.5 - High 2017-09-05 2022-04-19
CVE-2009-4402 The default configuration of SQL-Ledger 2.8.24 allows remote attackers to perform unspecified administrative operations by pr... 7.5 - HIGH 2009-12-23 2018-10-10
CVE-2009-3584 SQL-Ledger 2.8.24 does not set the secure flag for the session cookie in an https session, which makes it easier for remote a... 5 - MEDIUM 2009-12-23 2018-10-10
CVE-2009-3583 Directory traversal vulnerability in the Preferences menu item in SQL-Ledger 2.8.24 allows remote attackers to include and ex... 5.1 - MEDIUM 2009-12-23 2018-10-10
CVE-2009-3582 Multiple SQL injection vulnerabilities in the delete subroutine in SQL-Ledger 2.8.24 allow remote authenticated users to exec... 6.5 - MEDIUM 2009-12-23 2018-10-10
CVE-2009-3581 Multiple cross-site scripting (XSS) vulnerabilities in SQL-Ledger 2.8.24 allow remote authenticated users to inject arbitrary... 3.5 - LOW 2009-12-23 2018-10-10
CVE-2009-3580 Cross-site request forgery (CSRF) vulnerability in in SQL-Ledger 2.8.24 allows remote attackers to hijack the authentic... 6.8 - MEDIUM 2009-12-23 2018-10-10
CVE-2008-4078 SQL injection vulnerability in the AR/AP transaction report in (1) LedgerSMB (LSMB) before 1.2.15 and (2) SQL-Ledger 2.8.17 a... 6.5 - MEDIUM 2008-09-15 2018-10-11
CVE-2008-4077 The CGI scripts in (1) LedgerSMB (LSMB) before 1.2.15 and (2) SQL-Ledger 2.8.17 and earlier allow remote attackers to cause a... 7.8 - HIGH 2008-09-15 2018-10-11

