CVE-2013-5694

SQL injection vulnerability in status/service/acknowledge in Opsview before 4.4.1 allows remote attackers to execute arbitrary SQL commands via the service_selection parameter.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:opsview:opsview:*:-:*:*:enterprise:*:*:*
cpe:2.3:a:opsview:opsview:*:-:*:*:pro:*:*:*
cpe:2.3:a:opsview:opsview:2.7:*:*:*:*:*:*:*
cpe:2.3:a:opsview:opsview:2.8:*:*:*:*:*:*:*
cpe:2.3:a:opsview:opsview:2.10:*:*:*:*:*:*:*
cpe:2.3:a:opsview:opsview:2.12:*:*:*:*:*:*:*
cpe:2.3:a:opsview:opsview:2.14:*:*:*:*:*:*:*
cpe:2.3:a:opsview:opsview:3.0:-:*:*:community:*:*:*
cpe:2.3:a:opsview:opsview:3.1:-:*:*:community:*:*:*
cpe:2.3:a:opsview:opsview:3.2:-:*:*:enterprise:*:*:*
cpe:2.3:a:opsview:opsview:3.4:-:*:*:enterprise:*:*:*
cpe:2.3:a:opsview:opsview:3.6:-:*:*:enterprise:*:*:*
cpe:2.3:a:opsview:opsview:3.8:-:*:*:enterprise:*:*:*
cpe:2.3:a:opsview:opsview:3.10:-:*:*:enterprise:*:*:*
cpe:2.3:a:opsview:opsview:3.12:-:*:*:enterprise:*:*:*
cpe:2.3:a:opsview:opsview:3.14:-:*:*:enterprise:*:*:*
cpe:2.3:a:opsview:opsview:4.0:-:*:*:enterprise:*:*:*
cpe:2.3:a:opsview:opsview:4.0:-:*:*:pro:*:*:*
cpe:2.3:a:opsview:opsview:4.1:-:*:*:enterprise:*:*:*
cpe:2.3:a:opsview:opsview:4.1:-:*:*:pro:*:*:*
cpe:2.3:a:opsview:opsview:4.2:-:*:*:enterprise:*:*:*
cpe:2.3:a:opsview:opsview:4.2:-:*:*:pro:*:*:*
cpe:2.3:a:opsview:opsview:4.3:-:*:*:enterprise:*:*:*
cpe:2.3:a:opsview:opsview:4.3:-:*:*:pro:*:*:*

History

No history.

Information

Published : 2013-11-05 20:55

Updated : 2023-12-10 11:16


NVD link : CVE-2013-5694

Mitre link : CVE-2013-5694

CVE.ORG link : CVE-2013-5694


JSON object : View

Products Affected

opsview

  • opsview
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')