CVE-2018-20678

Published
View on NVD ↗
CVSS v3
N/A
CVSS v2
6.5
MEDIUM
Affected
1
PROJECT

Description

LibreNMS through 1.47 allows SQL injection via the html/ajax_table.php sort[hostname] parameter, exploitable by authenticated users during a search.

Community-based GPL-licensed network monitoring system
GitHubGitHub
4.77K