Show filters
15 Total Results
Displaying 11-15 of 15
Sort by:
Attacker Value
Unknown

CVE-2022-38540

Disclosure Date: September 13, 2022 (last updated February 24, 2025)
Archery v1.4.0 to v1.8.5 was discovered to contain a SQL injection vulnerability via the ThreadIDs parameter in the create_kill_session interface.
Attacker Value
Unknown

CVE-2022-38539

Disclosure Date: September 13, 2022 (last updated February 24, 2025)
Archery v1.7.5 to v1.8.5 was discovered to contain a SQL injection vulnerability via the where parameter at /archive/apply.
Attacker Value
Unknown

CVE-2022-38538

Disclosure Date: September 13, 2022 (last updated February 24, 2025)
Archery v1.7.0 to v1.8.5 was discovered to contain a SQL injection vulnerability via the checksum parameter in the report module.
Attacker Value
Unknown

CVE-2022-38537

Disclosure Date: September 13, 2022 (last updated February 24, 2025)
Archery v1.4.5 to v1.8.5 was discovered to contain multiple SQL injection vulnerabilities via the start_file, end_file, start_time, and stop_time parameters in the binlog2sql interface.
Attacker Value
Unknown

CVE-2022-38541

Disclosure Date: September 13, 2022 (last updated February 24, 2025)
Archery v1.8.3 to v1.8.5 was discovered to contain multiple SQL injection vulnerabilities via the start_time and stop_time parameters in the my2sql interface.