CVE-2014-2317: Opendocman
Medium severity, CVSS 6.8. EPSS: 1.2% chance of exploitation in the next 30 days.
SQL injection vulnerability in ajax_udf.php in OpenDocMan before 1.2.7.2 allows remote attackers to execute arbitrary SQL commands via the table parameter. NOTE: some of these details are obtained from third party information.
Affected products
- Opendocman Opendocman: up to and including 1.2.7.1; version 1.2.6.2 only; version 1.2.6.3 only; version 1.2.6.5 only; version 1.2.6.6 only; version 1.2.6.7 only; …
Published 2014-03-09. Last modified 2026-06-17.