SQL Injection Vulnerability in RSyslog by Adiscon
CVE-2005-3074

Currently unrated

Key Information:

Vendor

Rsyslog

Status
Vendor
CVE Published:
27 September 2005

What is CVE-2005-3074?

A SQL injection vulnerability exists in RSyslog versions prior to 1.0.1 and 1.10.1, allowing remote attackers to exploit the system by sending specially crafted syslog messages. This can lead to the execution of arbitrary SQL commands, potentially compromising the integrity of the database and exposing sensitive data.

References

Timeline

  • Vulnerability Reserved

  • Vulnerability published

.