SQL Injection Vulnerability in LibreNMS by LibreNMS
CVE-2020-15878
8.8HIGH
What is CVE-2020-15878?
A vulnerability in LibreNMS version 1.65 allows remote authenticated users to exploit a SQL injection flaw via the address parameter in the /ajax_table.php API endpoint. This allows attackers to extract sensitive information from the LibreNMS database, posing a significant risk to user data integrity and confidentiality. Users are encouraged to upgrade to the latest version to mitigate this risk and protect their systems.
