SQL injection vulnerability in the augmentSQL method in core/model/Translatable.php in SilverStripe 2.3.x before 2.3.10 and 2.4.x before 2.4.4, when the Translatable extension is enabled, allows remote attackers to execute arbitrary SQL commands via the locale parameter.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published: 2012-09-17T17:00:00

Updated: 2024-08-07T04:02:29.642Z

Reserved: 2011-08-19T00:00:00

Link: CVE-2010-4824

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2012-09-17T17:55:02.577

Modified: 2017-08-29T01:29:04.643

Link: CVE-2010-4824

cve-icon Redhat

No data.