Vulnerabilities > Firebirdsql > Firebird > 2.5.7

DATE CVE VULNERABILITY TITLE RISK
2018-03-28 CVE-2017-11509 SQL Injection vulnerability in multiple products
An authenticated remote attacker can execute arbitrary code in Firebird SQL Server versions 2.5.7 and 3.0.2 by executing a malformed SQL statement.
network
low complexity
firebirdsql debian CWE-89
critical
9.0