PT-2018-5215 · Eleix · Eleix Openhacker

Publicado

2018-01-02

·

Atualizado

2018-01-11

·

CVE-2017-1000444

CVSS v3.1

9.8

Crítica

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Eleix Openhacker version 0.1.47
Description The issue affects the account registration and login component, allowing for SQL injection. This can result in information disclosure and remote code execution.
Recommendations For Eleix Openhacker version 0.1.47, update to a version that fixes the SQL injection issue in the account registration and login component to prevent information disclosure and remote code execution. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

SQL injection

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2017-1000444

Produtos afetados

Eleix Openhacker