CVE-2017-1000444

CRITICAL

Eleix Openhacker <0.1.47 - RCE

Title source: llm
STIX 2.1

Description

Eleix Openhacker version 0.1.47 is vulnerable to an SQL injection in the account registration and login component resulting in information disclosure and remote code execution

References (2)

Core 2
Core References
Issue Tracking, Third Party Advisory x_refsource_confirm
https://github.com/Eleix/openhacker/issues/4

Scores

CVSS v3 9.8
EPSS 0.0132
EPSS Percentile 80.0%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-89
Status published
Products (1)
openhacker_project/openhacker 0.1.47
Published Jan 02, 2018
Tracked Since Feb 18, 2026