CVE-2017-14738

Publication date

2017-09-29 08:00:00

Family

mitre

State

PUBLISHED

Description

FileRun (version 2017.09.18 and below) suffers from a remote SQL injection vulnerability due to a failure to sanitize input in the metafield parameter inside the metasearch module (under the search function).