Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-q9w8-2xxh-ccfm

Опубликовано: 13 мая 2026
Источник: github
Github: Не прошло ревью
CVSS4: 6.1

Описание

A SQL injection vulnerability in Trust Protection Foundation allows an authenticated attacker to execute arbitrary SQL commands against the product database. Successful exploitation could allow an attacker to read sensitive data, modify database contents, and escalate privileges to gain full administrative control of the platform.

A SQL injection vulnerability in Trust Protection Foundation allows an authenticated attacker to execute arbitrary SQL commands against the product database. Successful exploitation could allow an attacker to read sensitive data, modify database contents, and escalate privileges to gain full administrative control of the platform.

EPSS

Процентиль: 16%
0.00248
Низкий

6.1 Medium

CVSS4

Дефекты

CWE-89

Связанные уязвимости

nvd
3 месяца назад

A SQL injection vulnerability in Trust Protection Foundation allows an authenticated attacker to execute arbitrary SQL commands against the product database. Successful exploitation could allow an attacker to read sensitive data, modify database contents, and escalate privileges to gain full administrative control of the platform.

CVSS3: 9
fstec
3 месяца назад

Уязвимость средства управления ключами и сертификатами Trust Protection Foundation (TPF), связанная с непринятием мер по защите структуры запроса SQL, позволяющая нарушителю выполнить произвольные команды и получить доступ на чтение, изменение и удаление данных

EPSS

Процентиль: 16%
0.00248
Низкий

6.1 Medium

CVSS4

Дефекты

CWE-89