[Forgot Password]
Login  Register Subscribe

30480

 
 

423868

 
 

253164

 
 

909

 
 

197077

 
 

282

Paid content will be excluded from the download.


Download | Alert*


CVE-2013-4422
SQL injection vulnerability in Quassel IRC before 0.9.1, when Qt 4.8.5 or later and PostgreSQL 8.2 or later are used, allows remote attackers to execute arbitrary SQL commands via a \ (backslash) in a message.

CVE-2015-3427
Quassel before 0.12.2 does not properly re-initialize the database session when the PostgreSQL database is restarted, which allows remote attackers to conduct SQL injection attacks via a \ (backslash) in a message. NOTE: this vulnerability exists because of an incomplete fix for CVE-2013-4422.

*OVAL
oval:org.secpod.oval:def:602087
CPE    24
cpe:/a:quassel-irc:quassel_irc:0.3.0
cpe:/a:quassel-irc:quassel_irc:0.3.1
cpe:/a:quassel-irc:quassel_irc:0.4.0
cpe:/a:quassel-irc:quassel_irc:0.4.1
...

© SecPod Technologies