Multiple SQL Injection Vulnerabilities in colord

Multiple SQL Injection Vulnerabilities in colord

CVE-2011-4349 · MEDIUM Severity

AV:L/AC:L/AU:N/C:P/I:P/A:P

Multiple SQL injection vulnerabilities in (1) cd-mapping-db.c and (2) cd-device-db.c in colord before 0.1.15 allow local users to execute arbitrary SQL commands via vectors related to color devices and (a) device id, (b) property, or (c) profile id.

Learn more about our Cis Benchmark Audit For Microsoft Sql Server.