Unrated severityNVD Advisory· Published Mar 9, 2014· Updated May 6, 2026
CVE-2014-2317
CVE-2014-2317
Description
SQL injection vulnerability in ajax_udf.php in OpenDocMan before 1.2.7.2 allows remote attackers to execute arbitrary SQL commands via the table parameter. NOTE: some of these details are obtained from third party information.
Affected products
12cpe:2.3:a:opendocman:opendocman:*:*:*:*:*:*:*:*+ 11 more
- cpe:2.3:a:opendocman:opendocman:*:*:*:*:*:*:*:*range: <=1.2.7.1
- cpe:2.3:a:opendocman:opendocman:1.2.6.2:-:*:*:*:*:*:*
- cpe:2.3:a:opendocman:opendocman:1.2.6.2:a:*:*:*:*:*:*
- cpe:2.3:a:opendocman:opendocman:1.2.6.2:b:*:*:*:*:*:*
- cpe:2.3:a:opendocman:opendocman:1.2.6.3:-:*:*:*:*:*:*
- cpe:2.3:a:opendocman:opendocman:1.2.6.3:a:*:*:*:*:*:*
- cpe:2.3:a:opendocman:opendocman:1.2.6.5:*:*:*:*:*:*:*
- cpe:2.3:a:opendocman:opendocman:1.2.6.6:*:*:*:*:*:*:*
- cpe:2.3:a:opendocman:opendocman:1.2.6.7:-:*:*:*:*:*:*
- cpe:2.3:a:opendocman:opendocman:1.2.6.7:beta:*:*:*:*:*:*
- cpe:2.3:a:opendocman:opendocman:1.2.6.8:*:*:*:*:*:*:*
- cpe:2.3:a:opendocman:opendocman:1.2.7:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- www.opendocman.com/opendocman-v1-2-7-2-releasednvdPatchVendor Advisory
- secunia.com/advisories/56189nvdVendor Advisory
- www.securityfocus.com/bid/65775nvd
News mentions
0No linked articles in our index yet.