5
CVSSv2

CVE-2019-6986

Published: 28/01/2019 Updated: 12/06/2023
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 446
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

SPARQL Injection in VIVO Vitro v1.10.0 allows a remote malicious user to execute arbitrary SPARQL via the uri parameter, leading to a regular expression denial of service (ReDoS), as demonstrated by crafted use of FILTER%20regex in a /individual?uri= request.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

duraspace vitro 1.10.0