← Back

CVE-2007-6342

nvd nist
Published: Dec 13, 2007Modified: Apr 23, 2026

JSON object

Loading...
7.5
Vector
AV:N/AC:L/Au:N/C:P/I:P/A:P
Exploitability: 10.0 / Impact: 6.4
Source: NVD

Description

SQL injection vulnerability in the David Castro AuthCAS module (AuthCAS.pm) 0.4 for the Apache HTTP Server allows remote attackers to execute arbitrary SQL commands via the SESSION_COOKIE_NAME (session ID) in a cookie.

Affected (1)

1 product
Apache Authcas
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 0.4

References (12)

Timeline

No history available yet.