Vulnerabilities > Multitech > Faxfinder > 3.5.2

DATE CVE VULNERABILITY TITLE RISK
2018-10-03 CVE-2018-17562 SQL Injection vulnerability in Multitech Faxfinder
Multi-Tech FaxFinder before 5.1.6 has SQL Injection via a status/call_details?oid= URI, allowing an attacker to extract the underlying database schema to further disclose other fax server information through different injection points.
network
low complexity
multitech CWE-89
5.0