### [CVE-2017-8015](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-8015) ![](https://img.shields.io/static/v1?label=Product&message=EMC%20AppSync%20all%20versions%20prior%20to%203.5&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Vulnerability&message=SQL%20Injection%20Vulnerability&color=brighgreen) ### Description EMC AppSync (all versions prior to 3.5) contains a SQL injection vulnerability that could potentially be exploited by malicious users to compromise the affected system. ### POC #### Reference - http://seclists.org/fulldisclosure/2017/Sep/14 #### Github No PoCs found on GitHub currently.