| TVN ID | TVN-202609006 |
|---|---|
| CVE ID | CVE-2026-89180 |
| CVSS | 8.7 (High) CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N 7.5 (High) CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N |
| Affected Products | EFence 1.2.65 DB Ver:55 and earlier |
| Description | EFence developed by Thinking Software Technology has a SQL Injection vulnerability, allowing unauthenticated remote attackers to inject arbitrary SQL commands to read database contents. |
| Solution | Please update to 1.2.67 DB Ver:57 or later |
| Credit | Shuan(CHT Security) |
| Public Date | 2026-09-14 |
