ZeroHour

CVE-2017-7681

CVSS 3.0
8.8 high
EPSS
1%p68
Published
()
Modified
Description

Apache OpenMeetings 1.0.0 is vulnerable to SQL injection. This allows authenticated users to modify the structure of the existing query and leak the structure of other queries being made by the application in the back-end.

Vendors
apache
Products
openmeetings
Weakness
CWE-89
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.