PT-2026-102902 · Toptech Systems · Tms7+1

CVE-2026-68954

·

Publicado

2026-09-29

·

Atualizado

2026-09-29

CVSS v3.1

9.0

Crítica

VetorAV:N/AC:L/PR:H/UI:N/S:C/C:H/I:L/A:H
The "pattern" parameter used in search function in the home page of the TMS application is vulnerable to time-based blind SQL injection vulnerability.

Correção

SQL injection

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2026-68954

Produtos afetados

Tms7
Tophat