Description
WebChess 1.0 allows SQL injection via the messageFrom, gameID, opponent, messageID, or to parameter.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2019-11431 | WebChess 1.0 allows SQL injection via the messageFrom, gameID, opponent, messageID, or to parameter. |
References
| Link | Providers |
|---|---|
| https://sourceforge.net/p/webchess/bugs/81/ |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T02:53:09.506Z
Reserved: 2020-07-07T00:00:00.000Z
Link: CVE-2019-20896
No data.
Status : Modified
Published: 2020-07-07T19:15:10.693
Modified: 2026-06-17T02:31:23.930
Link: CVE-2019-20896
No data.
OpenCVE Enrichment
No data.
Weaknesses
-
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
EUVD