High
CVSS 7.5
Overview
The send_to_sourcefire function in manage_sql.c in OpenVAS Manager 3.x before 3.0.4 allows remote attackers to execute arbitrary commands via the (1) IP address or (2) port number field in an OMP request.
The send_to_sourcefire function in manage_sql.c in OpenVAS Manager 3.x before 3...
The send_to_sourcefire function in manage_sql.c in OpenVAS Manager 3.x before 3.0.4 allows remote attackers to execute arbitrary commands via the (1) IP address or (2) port number field in an OMP request.
This vulnerability is rated 🟠 HIGH.
Recommended actions: