huzr2018/orderby_SQLi

huzr2018/orderby_SQLi

Releases0
Stars1

CVE History

CVEPublishedCVSS v3CVSS v2
7.5 HIGH

GoRose v1.0.4 has SQL Injection when the order_by or group_by parameter can be controlled.

7.5 HIGH

Kohana through 3.3.6 has SQL Injection when the order_by() parameter can be controlled.