CVE-2009-3042
EPSS 0.36%Published: 9/1/2009Modified: 4/28/2026
Description
SQL injection vulnerability in machine.php in Open Computer and Software (OCS) Inventory NG 1.02.1 allows remote attackers to execute arbitrary SQL commands via the systemid parameter, a different vector than CVE-2009-3040.
Affected packages (1)
- Debian/ocsinventory-serverfrom 0, < 1.02.1-2