SQL Injection Vulnerability in OpenDocMan Affects User Data Security
CVE-2014-2317
Currently unrated
What is CVE-2014-2317?
An SQL injection vulnerability exists in the ajax_udf.php file in OpenDocMan versions prior to 1.2.7.2, which enables remote attackers to execute arbitrary SQL commands via the table parameter. This flaw can compromise database integrity and expose sensitive user information, making it critical for users to update their installations to mitigate potential risks.
