First published: Fri Aug 03 2018(Updated: )
OCS Inventory 2.4.1 contains multiple SQL injections in the search engine. Authentication is needed in order to exploit the issues.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
ocsinventory-ng ocsinventory NG | =2.4.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-12482 is classified as a high severity vulnerability due to the potential for SQL injection attacks.
To fix CVE-2018-12482, upgrade OCS Inventory to the latest version that does not contain this vulnerability.
Exploitation of CVE-2018-12482 can lead to unauthorized access to sensitive data through SQL injection techniques.
Yes, authentication is required to exploit the SQL injection vulnerabilities identified in CVE-2018-12482.
CVE-2018-12482 specifically affects OCS Inventory version 2.4.1.