Loading
An issue was discovered on Accellion FTA devices before FTA_9_12_180. Because mysql_real_escape_string is misused, seos/courier/communication_p2p.php allows SQL injection with the app_id parameter.
Use CWE-89, Accellion vendor hub and File Transfer Appliance product page to widen CVE-2017-8796 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2017-8794, CVE-2019-5623 and CVE-2019-5622 for nearby disclosures in the same product family.