An issue exists in EyesOfNetwork 5.3. The EyesOfNetwork API 2.4.2 is prone to SQL injection, allowing an unauthenticated malicious user to perform various tasks such as authentication bypass via the username field to getApiKey in include/api_functions.php.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
eyesofnetwork eyesofnetwork 5.3-0 |