← volver
CVE-2026-0242

Trust Protection Foundation: SQL Injection Vulnerability

CVSS 6.1 MEDIUMEPSS 0.2%CWE-89
Vexday Risk Score
13Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS 6.1EPSS 0.2%KEV nãoPoC Nuclei Metasploit Patch referenciado
Ciclo de vida
13 may 2026Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
A SQL injection vulnerability in Trust Protection Foundation allows an authenticated attacker to execute arbitrary SQL commands against the product database. Successful exploitation could allow an attacker to read sensitive data, modify database contents, and escalate privileges to gain full administrative control of the platform.
CVSS:4.0/AV:A/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:L/SI:L/SA:N/E:U/AU:Y/R:U/V:C/RE:M/U:Amber

¿Quieres saber si tu infraestructura está expuesta a esto?

Hablar con TrueHacking →