Security Advisory

CVE-2018-17562

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2018-10-03 20:00:00
Last updated 2024-08-05 10:54:09
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Multi-Tech FaxFinder before 5.1.6 has SQL Injection via a status/call_details?oid= URI, allowing an attacker to extract the underlying database schema to further disclose other fax server information through different injection points.