CVE-2011-1939

Severity CVSS v4.0:
Pending analysis
Type:
CWE-89 SQL Injection
Publication date:
26/11/2019
Last modified:
21/11/2024

Description

SQL injection vulnerability in Zend Framework 1.10.x before 1.10.9 and 1.11.x before 1.11.6 when using non-ASCII-compatible encodings in conjunction PDO_MySql in PHP before 5.3.6.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:zend:zend_framework:*:*:*:*:*:*:*:* 1.10.0 (including) 1.10.9 (excluding)
cpe:2.3:a:zend:zend_framework:*:*:*:*:*:*:*:* 1.11.0 (including) 1.11.6 (excluding)
cpe:2.3:a:php:php:*:*:*:*:*:*:*:* 5.3.6 (excluding)
cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*