Vulnerability Details CVE-2014-3906
SQL injection vulnerability in OSK Advance-Flow 4.41 and earlier and Advance-Flow Forms 4.41 and earlier allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 54.0%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2014-3906
-
cpe:2.3:a:kk-osk:advance-flow:4.41
-
cpe:2.3:a:kk-osk:advance-flow_forms:4.41