CVE-2017-7952

EUVD-2017-16923
INFOR EAM V11.0 Build 201410 has SQL injection via search fields, related to the filtervalue parameter.
SQL Injection
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
8.8 HIGH
NETWORK
LOW
LOW
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H