Sar2Html · Sar2Html · CVE-2026-18719
**Name of the Vulnerable Software and Affected Versions**
cemtan sar2html version 4.0.0
**Description**
A SQL injection issue exists within the Search component in the `sar2html.py` file. This flaw allows a remote attacker to execute unauthorized database queries by manipulating the `Search` argument. SQL injection is a technique where malicious SQL statements are inserted into entry fields for execution, potentially allowing unauthorized access to data.
**Recommendations**
At the moment, there is no information about a newer version that contains a fix for this vulnerability.