GreenSQL Firewall (greensql-fw) before 0.9.2 allows remote attackers to bypass SQL injection protection via a crafted string, possibly involving an encoded space character (%20).
Weaknesses in this category are related to the management of permissions, privileges, and other security features that are used to perform access control.
Link | Tags |
---|---|
http://www.greensql.net/node/41 | patch vendor advisory |
http://www.greensql.net/security | patch vendor advisory |
http://osvdb.org/48906 | vdb entry exploit |