Zend Framework SQL Injection Vulnerability (CVE-2016-4861)
Publish Date: 12 Oktober 2016
Schweregrad:: Kritisch
Beschreibung
Zend Framework is prone to an SQL injection vulnerability by the implementation of ORDER BY and GROUP BY in Zend_Db_Select, when a combination of SQL expressions and comments are used.
Trend Micro Lösungen
Apply associated Trend Micro DPI Rules.
Lösungen
Trend Micro Deep Security DPI Rule Number: 1000608