Bug#748828: collabtive: CVE-2014-3246 CVE-2014-3247

2014-05-23 Thread Gunnar Wolf
Salvatore Bonaccorso dijo [Wed, May 21, 2014 at 07:18:46AM +0200]: the following vulnerabilities were published for collabtive. CVE-2014-3246[0]: | SQL injection vulnerability in Collabtive 1.2 allows remote | authenticated users to execute arbitrary SQL commands via the folder | parameter

Bug#748828: collabtive: CVE-2014-3246 CVE-2014-3247

2014-05-20 Thread Salvatore Bonaccorso
Source: collabtive Severity: grave Tags: security upstream Hi, the following vulnerabilities were published for collabtive. CVE-2014-3246[0]: | SQL injection vulnerability in Collabtive 1.2 allows remote | authenticated users to execute arbitrary SQL commands via the folder | parameter in a