Critical severity9.8NVD Advisory· Published Nov 26, 2019· Updated Jun 16, 2026
CVE-2011-1939
CVE-2011-1939
Description
SQL injection vulnerability in Zend Framework 1.10.x before 1.10.9 and 1.11.x before 1.11.6 when using non-ASCII-compatible encodings in conjunction PDO_MySql in PHP before 5.3.6.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
6- Range: before 5.3.6
Patches
Vulnerability mechanics
References
7- bugs.php.net/bug.phpnvdExploitThird Party Advisory
- security.gentoo.org/glsa/glsa-201408-01.xmlnvdThird Party Advisory
- www.securityfocus.com/bid/47919nvdThird Party AdvisoryVDB Entry
- bugzilla.redhat.com/show_bug.cginvdIssue TrackingThird Party Advisory
- framework.zend.com/security/advisory/ZF2011-02nvdVendor Advisory
- security-tracker.debian.org/tracker/CVE-2011-1939nvdThird Party Advisory
- access.redhat.com/security/cve/cve-2011-1939nvdBroken Link
News mentions
0No linked articles in our index yet.