A SQL injection vulnerability in Yvan Dotet PostgreSQL Query Deluxe module (aka query_deluxe) 17.x before 17.0.0.4 allows a remote attacker to gain privileges via the query parameter to models/querydeluxe.py:QueryDeluxe::get_result_from_query.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2024-05-06T00:00:00

Updated: 2024-08-02T02:59:20.971Z

Reserved: 2024-05-06T00:00:00

Link: CVE-2024-34532

cve-icon Vulnrichment

Updated: 2024-08-02T02:59:20.971Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-05-06T21:15:48.637

Modified: 2024-07-03T02:00:31.917

Link: CVE-2024-34532

cve-icon Redhat

No data.