Vulnerabilities > Freedesktop > Colord

DATE CVE VULNERABILITY TITLE RISK
2011-12-10 CVE-2011-4349 SQL Injection vulnerability in Freedesktop Colord
Multiple SQL injection vulnerabilities in (1) cd-mapping-db.c and (2) cd-device-db.c in colord before 0.1.15 allow local users to execute arbitrary SQL commands via vectors related to color devices and (a) device id, (b) property, or (c) profile id.
local
low complexity
freedesktop CWE-89
4.6