SQL Injection Vulnerability in AssetView for MacOS Ver.9.2.0 and Earlier: Remote Code Execution via File Transfer Web Service

SQL Injection Vulnerability in AssetView for MacOS Ver.9.2.0 and Earlier: Remote Code Execution via File Transfer Web Service

CVE-2017-2241 · MEDIUM Severity

AV:N/AC:L/AU:S/C:P/I:P/A:P

SQL injection vulnerability in the AssetView for MacOS Ver.9.2.0 and earlier versions allows remote attackers to execute arbitrary SQL commands via "File Transfer Web Service".

Learn more about our Cis Benchmark Audit For Apple Macos.