CVE-2017-20163: Nview Project Nview
Critical severity, CVSS 9.8. EPSS: 0.6% chance of exploitation in the next 30 days.
A vulnerability has been found in Red Snapper NView and classified as critical. This vulnerability affects the function mutate of the file src/Session.php. The manipulation of the argument session leads to sql injection. The name of the patch is cbd255f55d476b29e5680f66f48c73ddb3d416a8. It is recommended to apply a patch to fix this issue. The identifier of this vulnerability is VDB-217516.
Affected products
- Nview Project Nview: before 2017-04-28 (fixed in 2017-04-28)
Published 2023-01-05. Last modified 2026-06-17.