VYPR

Disk Pool Manager

by Disk Pool Manager Project

CVEs (1)

  • CVE-2011-4970May 13, 2014
    risk 0.00cvss epss 0.02

    Multiple SQL injection vulnerabilities in LCG Disk Pool Manager (DPM) before 1.8.6, as used in EGI UDM, allow remote attackers to execute arbitrary SQL commands via the (1) r_token variable in the dpm_get_pending_req_by_token, (2) dpm_get_cpr_by_fullid, (3) dpm_get_cpr_by_surl,…