CVE-2010-4641

SQL injection vulnerability in XWiki Enterprise before 2.5 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:xwiki:xwiki:*:*:*:*:*:*:*:*
cpe:2.3:a:xwiki:xwiki:0.9.543:*:*:*:*:*:*:*
cpe:2.3:a:xwiki:xwiki:0.9.790:*:*:*:*:*:*:*
cpe:2.3:a:xwiki:xwiki:0.9.793:*:*:*:*:*:*:*
cpe:2.3:a:xwiki:xwiki:0.9.840:*:*:*:*:*:*:*
cpe:2.3:a:xwiki:xwiki:0.9.1252:*:*:*:*:*:*:*
cpe:2.3:a:xwiki:xwiki:1.0:b1:*:*:*:*:*:*
cpe:2.3:a:xwiki:xwiki:1.0:b2:*:*:*:*:*:*
cpe:2.3:a:xwiki:xwiki:1.1:rc1:*:*:*:*:*:*

History

No history.

Information

Published : 2010-12-30 21:00

Updated : 2023-12-10 11:03


NVD link : CVE-2010-4641

Mitre link : CVE-2010-4641

CVE.ORG link : CVE-2010-4641


JSON object : View

Products Affected

xwiki

  • xwiki
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')