HIGHVulnerability
Verified
Global

NVD HIGH: CVE-2026-40812 — An unauthenticated remote attacker can exploit an unauthenticated SQL Injection ...

·Source: NIST NVD

Updated:

Executive Summary

An unauthenticated remote attacker can exploit an unauthenticated SQL Injection vulnerability in the getLiveValues functions sn parameter due to improper neutralization of special elements in a SQL SELECT command. This can result in a total loss of confidentiality.

Analysis

An unauthenticated remote attacker can exploit an unauthenticated SQL Injection vulnerability in the getLiveValues functions sn parameter due to improper neutralization of special elements in a SQL SELECT command. This can result in a total loss of confidentiality. CVSS Score: 7.5. Published: 2026-05-27T08:16:41.487.

Indicators of Compromise (1)

CVE (1)
CVE-2026-40812
Source Attribution

Originally published by NIST NVD on May 27, 2026. Verified by: NIST.

Related Threats