First published: Thu Oct 10 2019(Updated: )
An issue was discovered in MetInfo 7.0. There is SQL injection via the admin/?n=language&c=language_general&a=doSearchParameter appno parameter, a different issue than CVE-2019-16997.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Metinfo Metinfo | =7.0.0-beta |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-17418 is a vulnerability discovered in MetInfo 7.0 that allows SQL injection via the admin/?n=language&c=language_general&a=doSearchParameter appno parameter.
CVE-2019-17418 has a severity value of 7.2, which is considered high.
CVE-2019-17418 affects MetInfo version 7.0.0-beta.
At the moment, there is no official fix for CVE-2019-17418. It is recommended to update to a patched version or apply necessary security measures.
You can find more information about CVE-2019-17418 on the GitHub issue page: https://github.com/evi1code/Just-for-fun/issues/2