Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[9.1.4] SQL injection in front/devicesoundcard.php #2449

Closed
AceSec opened this issue Jul 12, 2017 · 3 comments
Closed

[9.1.4] SQL injection in front/devicesoundcard.php #2449

AceSec opened this issue Jul 12, 2017 · 3 comments
Labels
Milestone

Comments

@AceSec
Copy link

AceSec commented Jul 12, 2017

ji.xu@dbappsecurity.com.cn

CVE-2017-11184

@AceSec AceSec changed the title SQL injection in front/devicesoundcard.php [9.1.4] SQL injection in front/devicesoundcard.php Jul 12, 2017
@orthagh
Copy link
Contributor

orthagh commented Jul 12, 2017

Hello @dbappxuji

I edited this issue to avoid disclosure of the injection (i saved on a private space).
BTW, thank you for the report, we will adress asap

@orthagh
Copy link
Contributor

orthagh commented Jul 12, 2017

One thing, you can contact us on glpi-security[at]ow2.org for this kind of issues.

Thanks

@AceSec
Copy link
Author

AceSec commented Jul 12, 2017 via email

trasher added a commit to trasher/glpi that referenced this issue Jul 13, 2017
@trasher trasher mentioned this issue Jul 13, 2017
trasher added a commit to trasher/glpi that referenced this issue Jul 13, 2017
trasher added a commit to trasher/glpi that referenced this issue Jul 13, 2017
trasher added a commit to trasher/glpi that referenced this issue Jul 13, 2017
trasher added a commit that referenced this issue Jul 13, 2017
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Projects
None yet
Development

No branches or pull requests

2 participants