CVE-2017-2241

MEDIUM

AssetView <9.2.0 - SQL Injection

Title source: llm

Description

SQL injection vulnerability in the AssetView for MacOS Ver.9.2.0 and earlier versions allows remote attackers to execute arbitrary SQL commands via "File Transfer Web Service".

Scores

CVSS v3 6.3
EPSS 0.0031
EPSS Percentile 53.8%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L

Details

CWE
CWE-89
Status published
Products (2)
hammock/assetview
Hammock Corporation/AssetView for MacOS < Ver.9.2.0 and earlier versions
Published Jul 17, 2017
Tracked Since Feb 18, 2026