{"id":"CVE-2018-20678","aliases":["GHSA-4fwh-r866-pvh9"],"url":"https://o3.security/vulnerability/CVE-2018-20678","summary":"LibreNMS SQL Injection","details":"LibreNMS through 1.47 allows SQL injection via the html/ajax_table.php sort[hostname] parameter, exploitable by authenticated users during a search.","published":"2019-03-28T16:29:00.393Z","modified":"2026-07-08T20:04:29.586527Z","cvss":{"score":8.8,"severity":"HIGH","vector":"CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"},"epss":{"score":0.01378,"percentile":0.70753,"asOf":"2026-09-17"},"cisaKev":null,"exploitsKnown":0,"affectedPackages":[{"ecosystem":"Packagist","name":"librenms/librenms","fixedVersion":"1.65"}],"fix":null,"references":[{"type":"ADVISORY","url":"https://cert.enea.pl/advisories/cert-190101.html"},{"type":"ADVISORY","url":"https://github.com/librenms/librenms/commits/master/html/ajax_table.php"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2026-07-08T20:04:29.586527Z"}}