Vulnerability Details CVE-2015-5725
SQL injection vulnerability in the offset method in the Active Record class in CodeIgniter before 2.2.4 allows remote attackers to execute arbitrary SQL commands via vectors involving the offset variable.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.009
EPSS Ranking 74.1%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 7.5
Products affected by CVE-2015-5725
-
cpe:2.3:a:codeigniter:codeigniter:1.0
-
cpe:2.3:a:codeigniter:codeigniter:1.1
-
cpe:2.3:a:codeigniter:codeigniter:1.2.0
-
cpe:2.3:a:codeigniter:codeigniter:1.3.0
-
cpe:2.3:a:codeigniter:codeigniter:1.3.1
-
cpe:2.3:a:codeigniter:codeigniter:1.3.2
-
cpe:2.3:a:codeigniter:codeigniter:1.3.3
-
cpe:2.3:a:codeigniter:codeigniter:1.4.0
-
cpe:2.3:a:codeigniter:codeigniter:1.4.1
-
cpe:2.3:a:codeigniter:codeigniter:1.5.0
-
cpe:2.3:a:codeigniter:codeigniter:1.5.0.1
-
cpe:2.3:a:codeigniter:codeigniter:1.5.1
-
cpe:2.3:a:codeigniter:codeigniter:1.5.2
-
cpe:2.3:a:codeigniter:codeigniter:1.5.3
-
cpe:2.3:a:codeigniter:codeigniter:1.5.4
-
cpe:2.3:a:codeigniter:codeigniter:1.6.0
-
cpe:2.3:a:codeigniter:codeigniter:1.6.1
-
cpe:2.3:a:codeigniter:codeigniter:1.6.2
-
cpe:2.3:a:codeigniter:codeigniter:1.6.3
-
cpe:2.3:a:codeigniter:codeigniter:1.7.0
-
cpe:2.3:a:codeigniter:codeigniter:1.7.1
-
cpe:2.3:a:codeigniter:codeigniter:1.7.2
-
cpe:2.3:a:codeigniter:codeigniter:2.0.0
-
cpe:2.3:a:codeigniter:codeigniter:2.0.1
-
cpe:2.3:a:codeigniter:codeigniter:2.0.2
-
cpe:2.3:a:codeigniter:codeigniter:2.0.3
-
cpe:2.3:a:codeigniter:codeigniter:2.1.0
-
cpe:2.3:a:codeigniter:codeigniter:2.1.1
-
cpe:2.3:a:codeigniter:codeigniter:2.1.2
-
cpe:2.3:a:codeigniter:codeigniter:2.1.3
-
cpe:2.3:a:codeigniter:codeigniter:2.1.4
-
cpe:2.3:a:codeigniter:codeigniter:2.2.0
-
cpe:2.3:a:codeigniter:codeigniter:2.2.1
-
cpe:2.3:a:codeigniter:codeigniter:2.2.2
-
cpe:2.3:a:codeigniter:codeigniter:2.2.3