Security Advisory

CVE-2011-2688

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2011-07-28 18:00:00
Last updated 2024-08-06 23:08:23
Assigner redhat
State PUBLISHED

Description

SQL injection vulnerability in mysql/mysql-auth.pl in the mod_authnz_external module 3.2.5 and earlier for the Apache HTTP Server allows remote attackers to execute arbitrary SQL commands via the user field.