The mysql-ocaml bindings 1.0.4 for MySQL do not properly support the mysql_real_escape_string function, which might allow remote attackers to leverage escaping issues involving multibyte character encodings.
References
Configurations
Configuration 1 (hide)
AND |
|
History
No history.
Information
Published : 2009-10-22 16:30
Updated : 2009-10-27 05:27
NVD link : CVE-2009-2942
Mitre link : CVE-2009-2942
CVE.ORG link : CVE-2009-2942
JSON object : View
Products Affected
mysql-ocaml
- mysql-ocaml
mysql
- mysql
CWE