First published: Mon Sep 11 2017(Updated: )
SQL Injection exists in the EyesOfNetwork web interface (aka eonweb) 5.1-0 via the user_id cookie to header.php, a related issue to CVE-2017-1000060.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
EyesOfNetwork EyesOfNetwork | =5.1-0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-14247 has a medium severity due to its SQL injection vulnerability.
To address CVE-2017-14247, users should upgrade to a patched version of EyesOfNetwork that is not vulnerable.
CVE-2017-14247 affects the EyesOfNetwork version 5.1-0.
CVE-2017-14247 is classified as an SQL injection vulnerability.
Yes, CVE-2017-14247 can lead to unauthorized access and data compromise if exploited.