Vulnerabilities > Akips

DATE CVE VULNERABILITY TITLE RISK
2020-01-06 CVE-2016-11017 OS Command Injection vulnerability in Akips Network Monitor
The application login page in AKIPS Network Monitor 15.37 through 16.5 allows a remote unauthenticated attacker to execute arbitrary OS commands via shell metacharacters in the username parameter (a failed login attempt returns the command-injection output to a limited login failure field).
network
low complexity
akips CWE-78
critical
9.8