Vulnerabilities (CVE)

Filtered by vendor Orientdb Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2017-11467 1 Orientdb 1 Orientdb 2019-10-03 10.0 HIGH 9.8 CRITICAL
OrientDB through 2.2.22 does not enforce privilege requirements during "where" or "fetchplan" or "order by" use, which allows remote attackers to execute arbitrary OS commands via a crafted request.