PT-2026-84164 · E-Osb · E-Osb
CVE-2026-18765
·
Published
2026-09-01
·
Updated
2026-09-01
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
E-OSB versions prior to V02.26.07.08.01
Description
Improper neutralization of special elements used in an SQL command leads to a SQL injection issue. This allows an attacker to interfere with the queries that an application makes to its database, potentially allowing them to view data they are not normally able to retrieve or modify database records.
Recommendations
Update E-OSB to version V02.26.07.08.01 or later.
Fix
SQL injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
E-Osb