SQL Injection Vulnerability in OpenDocMan by OpenDocMan
CVE-2014-1945
Currently unrated
What is CVE-2014-1945?
A SQL injection vulnerability exists in the ajax_udf.php file of OpenDocMan versions prior to 1.2.7.2. This flaw allows remote attackers to inject arbitrary SQL commands through the 'add_value' parameter, potentially leading to unauthorized access and manipulation of the database. Organizations using affected versions of OpenDocMan should consider upgrading to the latest version to mitigate risks associated with this vulnerability.
