Vulnerabilities > Netreo > Omnicenter > 12.0.5

DATE CVE VULNERABILITY TITLE RISK
2019-10-09 CVE-2019-17128 SQL Injection vulnerability in Netreo Omnicenter
Netreo OmniCenter through 12.1.1 allows unauthenticated SQL Injection (Boolean Based Blind) in the redirect parameters and parameter name of the login page through a GET request.
network
low complexity
netreo CWE-89
5.0