Ampache before version 4.2.2 allows unauthenticated users to perform SQL injection. Refer to the referenced GitHub Security Advisory for details and a workaround. This is fixed in version 4.2.2 and the development branch.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: GitHub_M

Published: 2021-04-30T15:20:16

Updated: 2021-04-30T15:20:15

Reserved: 2020-06-25T00:00:00


Link: CVE-2020-15153

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2021-04-30T16:15:07.447

Modified: 2021-05-09T02:29:38.493


Link: CVE-2020-15153

JSON object: View

cve-icon Redhat Information

No data.

CWE