Files
CVEs-PoC/2017/CVE-2017-14738.md
2025-09-29 21:09:30 +02:00

690 B

CVE-2017-14738

Description

FileRun (version 2017.09.18 and below) suffers from a remote SQL injection vulnerability due to a failure to sanitize input in the metafield parameter inside the metasearch module (under the search function).

POC

Reference

Github