7.5
CVSSv2

CVE-2014-9220

Published: 03/12/2014 Updated: 30/10/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in OpenVAS Manager prior to 4.0.6 and 5.x prior to 5.0.7 allows remote malicious users to execute arbitrary SQL commands via the timezone parameter in a modify_schedule OMP command.

Vulnerable Product Search on Vulmon Subscribe to Product

fedoraproject fedora 21

openvas openvas manager

openvas openvas manager 5.0.0

openvas openvas manager 5.0.2

openvas openvas manager 5.0.1

openvas openvas manager 5.0.5

openvas openvas manager 5.0.3

openvas openvas manager 5.0.6

openvas openvas manager 5.0.4

opensuse opensuse 13.2