VYPR

USM and OSSIM

by Alienvault

CVEs (1)

  • CVE-2017-6971HigMar 22, 2017
    risk 0.63cvss 8.8epss 0.16

    AlienVault USM and OSSIM before 5.3.7 and NfSen before 1.3.8 allow remote authenticated users to execute arbitrary commands in a privileged context, or launch a reverse shell, via vectors involving the PHP session ID and the NfSen PHP code, aka AlienVault ID ENG-104862.