CVE-2015-5078 PUBLISHED CVSS 6.5 MEDIUM

SQL injection vulnerability in the insert function in application/controllers/admin/dataentry.php in LimeSurvey 2.06+ allows remote authenticated users to execute arbitrary SQL commands via the closedate parameter.

EPSS 0.30% · 53.4th percentile

Risk Scores

CVSS v2.0
6.5
EPSS Score
0.30%
53.4th percentile

Affected Products

VendorProductVersions
n/an/an/a
limesurveylimesurvey2.06\+

Timeline

References

Open in Interactive Console →