Unrated severityNVD Advisory· Published Apr 17, 2020· Updated Aug 4, 2024
CVE-2020-11886
CVE-2020-11886
Description
OpenNMS Horizon and Meridian allows HQL Injection in element/nodeList.htm (aka the NodeListController) via snmpParm or snmpParmValue to addCriteriaForSnmpParm. This affects Horizon before 25.2.1, Meridian 2019 before 2019.1.4, Meridian 2018 before 2018.1.16, and Meridian 2017 before 2017.1.21.
Affected products
3- OpenNMS/Horizon and Meridiandescription
- Range: <2019.1.4
Patches
Vulnerability mechanics
References
1- issues.opennms.org/browse/NMS-12572mitrex_refsource_MISC
News mentions
0No linked articles in our index yet.