CVE-2011-2688
EPSS 7.3%libapache2-mod-authnz-external - SQL injection
Published: 7/28/2011Modified: 4/28/2026
Description
SQL injection vulnerability in mysql/mysql-auth.pl in the mod_authnz_external module 3.2.5 and earlier for the Apache HTTP Server allows remote attackers to execute arbitrary SQL commands via the user field.
Affected packages (2)
- Debian/libapache2-mod-authnz-externalfrom 0, < 3.2.4-2.1
- Debian/libapache2-mod-authnz-externalfrom 0, < 3.2.4-2+squeeze1