GHSA-79mg-4w23-4fqc

Suggest an improvement
Source
https://github.com/advisories/GHSA-79mg-4w23-4fqc
Import Source
https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2021/08/GHSA-79mg-4w23-4fqc/GHSA-79mg-4w23-4fqc.json
JSON Data
https://api.test.osv.dev/v1/vulns/GHSA-79mg-4w23-4fqc
Aliases
Published
2021-08-30T16:12:58Z
Modified
2023-11-01T04:56:04.055907Z
Severity
  • 8.1 (High) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N CVSS Calculator
Summary
Unauthenticated SQL Injection in Cachet
Details

Impact

In Cachet versions through 2.3.18, there is a SQL injection which is in the SearchableTrait#scopeSearch(). Attackers without authentication can utilize this vulnerability to exfiltrate sensitive data from the database such as administrator's password and session.

Patches

The original repository of https://github.com/CachetHQ/Cachet is not active, the stable version 2.3.18 and it's developing 2.4 branch is affected.

Update to version 2.5 or later in the https://github.com/fiveai/Cachet fork to fix this vulnerability.

Database specific
{
    "nvd_published_at": "2021-08-26T21:15:00Z",
    "github_reviewed_at": "2021-08-26T20:21:00Z",
    "severity": "HIGH",
    "github_reviewed": true,
    "cwe_ids": [
        "CWE-287",
        "CWE-89"
    ]
}
References

Affected packages

Packagist / cachethq/cachet

Package

Name
cachethq/cachet
Purl
pkg:composer/cachethq/cachet

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Last affected
2.3.18

Affected versions

v0.*

v0.1.0-alpha

v1.*

v1.0.0
v1.1.0
v1.1.1
v1.2.0
v1.2.1

v2.*

v2.0.0-beta1
v2.0.0-beta2
v2.0.0-RC1
v2.0.0-RC2
v2.0.0-RC3
v2.0.0-RC4
v2.0.0-RC5
v2.0.0
v2.0.1
v2.0.2
v2.0.3
v2.0.4
v2.1.0-RC1
v2.1.0-RC2
v2.1.0
v2.1.1
v2.1.2
v2.2.0-RC1
v2.2.0
v2.2.1
v2.2.2
v2.2.3
v2.2.4
v2.3.0-RC1
v2.3.0-RC2
v2.3.0-RC3
v2.3.0-RC4
v2.3.0-RC5
v2.3.0-RC6
v2.3.0
v2.3.1
v2.3.2
v2.3.3
v2.3.4
v2.3.5
v2.3.6
v2.3.7
v2.3.8
v2.3.9
v2.3.10
v2.3.11
v2.3.12
v2.3.13
v2.3.14
v2.3.15
v2.3.16
v2.3.17
v2.3.18