CNNVD-202601-2868 Information

CNNVD ID

CNNVD-202601-2868

CVE-2021-47801

  • CNNVD Published: 2026-01-16

Description (Chinese)

Vianeos OctoPUS是法国Vianeos公司的一款视频服务中间件系统。 Vianeos OctoPUS 5版本存在SQL注入漏洞,该漏洞源于login_user参数存在基于时间的盲SQL注入,可能导致信息泄露。

Description (English)

Vianeos OctoPUS is a video service intermediate system of Vianeos, France. The Vianeos OctoPUS version 5 has an SQL injection loophole, which stems from the time-based blind SQL injection of login user parameters, which may lead to information leaks.

Hazard Level

Medium

Vulnerability Type

SQL注入

Affected Vendor

Vianeos

Published

2026-01-16

Last Modified

2026-02-24

References

http://www.vianeos.com/en/home-vianeos/ https://vianeos.com/en/products/octopus https://www.exploit-db.com/exploits/50078 https://www.vulncheck.com/advisories/vianeos-octopus-loginuser-sqli

Share on: