CVE-2012-2086
EPSS 2.4%
描述
SQL injection vulnerability in the get_last_conversation_lines function in common/logger.py in Gajim before 0.15 allows remote attackers to execute arbitrary SQL commands via the jig parameter.
如何修補 CVE-2012-2086
要修補 CVE-2012-2086,請將受影響套件升級到下列已修補版本。
- Debian/gajim—升級至 0.15-1 或更新版本
CVE-2012-2086 正在被利用嗎?
低 — EPSS 為 2.4%,目前沒有觀察到大規模利用活動。
受影響套件(1)
- Debian/gajimfrom 0, < 0.15-1