← Back to CVE List
CVE-2017-14851
A SQL injection vulnerability exists in all Orpak SiteOmat versions prior to 2017-09-25. The vulnerability is in the login page, where the authentication validation process contains an insecure SELECT query. The attack allows for authentication bypass.
> MITRE Terms of Use apply – see LICENSE‑MITRE.txt