SQL Injection Vulnerability in Marginalia < 1.6

SQL Injection Vulnerability in Marginalia < 1.6

CVE-2019-1010191 · HIGH Severity

AV:N/AC:L/AU:N/C:P/I:P/A:P

marginalia < 1.6 is affected by: SQL Injection. The impact is: The impact is a injection of any SQL queries when a user controller argument is added as a component. The component is: Affects users that add a component that is user controller, for instance a parameter or a header. The attack vector is: Hacker inputs a SQL to a vulnerable vector(header, http parameter, etc). The fixed version is: 1.6.

Learn more about our Cis Benchmark Audit For Microsoft Sql Server.