← Späť na vyhľadávanie CVE

CVE-2026-0242

Trust Protection Foundation

Popis

A SQL injection vulnerability in Trust Protection Foundation allows an authenticated attacker to execute arbitrary SQL commands against the product database. Successful exploitation could allow an attacker to read sensitive data, modify database contents, and escalate privileges to gain full administrative control of the platform.

CVSS 6.1EPSS 0.248%Riziko 0.62
Zobraziť zdroj
Zverejnené
2026-05-13 19:16:58
Dotknuté verzie
unknown
Typ
Core software
Vektor
CVSS:4.0/AV:A/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:L/SI:L/SA:N/E:U/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:Y/R:U/V:C/RE:M/U:Amber