SQL injection vulnerability in rsyslogd in RSyslog before 1.0.1 and before 1.10.1 allows remote attackers to execute arbitrary SQL commands via crafted syslog messages.
2005-09-27T19:03:00.000
2025-04-03T01:03:51.193
Deferred
CVSSv2: 7.5 (HIGH)
AV:N/AC:L/Au:N/C:P/I:P/A:P
10.0
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | rsyslog | rsyslogd | ≤ 1.0.1_stable | Yes |
Application | rsyslog | rsyslogd | ≤ 1.10.1_development | Yes |
Application | rsyslog | rsyslogd | 0.8.0_stable | Yes |
Application | rsyslog | rsyslogd | 0.8.1_stable | Yes |
Application | rsyslog | rsyslogd | 0.8.2_stable | Yes |
Application | rsyslog | rsyslogd | 0.8.3_stable | Yes |
Application | rsyslog | rsyslogd | 0.8.4_stable | Yes |
Application | rsyslog | rsyslogd | 0.9.0_stable | Yes |
Application | rsyslog | rsyslogd | 0.9.1_stable | Yes |
Application | rsyslog | rsyslogd | 0.9.2_stable | Yes |
Application | rsyslog | rsyslogd | 0.9.3_stable | Yes |
Application | rsyslog | rsyslogd | 0.9.4_stable | Yes |
Application | rsyslog | rsyslogd | 0.9.5_stable | Yes |
Application | rsyslog | rsyslogd | 0.9.6_stable | Yes |
Application | rsyslog | rsyslogd | 0.9.7_stable | Yes |
Application | rsyslog | rsyslogd | 0.9.8_stable | Yes |
Application | rsyslog | rsyslogd | 1.0.0_stable | Yes |