CVE-2009-1208

Priority
Description
SQL injection vulnerability in auth2db 0.2.5, and possibly other versions
before 0.2.7, uses the addslashes function instead of the
mysql_real_escape_string function, which allows remote attackers to conduct
SQL injection attacks using multibyte character encodings.
Notes
Package
Upstream:released (0.2.5-2+dfsg-1.1)
Ubuntu 22.04 LTS (Jammy Jellyfish):not-affected
Patches:
More Information

Updated: 2022-02-10 23:36:51 UTC (commit acb3d89ab51f1d5e5543fa993969c0eb13c71f04)