Record summary

CVE-2014-5383 has a selected CVSS score of 6.5; EIP currently links 2 catalogued exploits.

Description

SQL injection vulnerability in AlienVault OSSIM before 4.7.0 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
2

Proofs of concept

2

Catalogued exploits

ExploitDBAlienvault Open Source SIEM (OSSIM) 4.6.1 - (Authenticated) SQL Injection (Metasploit)ExploitDB exploitby Chris HebertNot analyzed1 file
ExploitDB

PoC details
MetasploitAlienVault Authenticated SQL Injection Arbitrary File ReadMetasploit auxiliary PoCby Chris Hebert <chrisdhebert@gmail.com>Not analyzed1 file

Ruby

Metasploit

PoC details

References

3