Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 01 Sep 2026 22:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | SQL Injection Vulnerability in NetBotz Database via Web Service | |
| Metrics |
ssvc
|
Tue, 01 Sep 2026 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | CWE-564: SQL Injection: Hibernate vulnerability exists that could allow the injection of a malicious HQL query in the NetBotz database when a malicious user is logged into the NetBotz via the web-service interface or webui. | |
| Weaknesses | CWE-564 | |
| References |
| |
| Metrics |
cvssV4_0
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: schneider
Published:
Updated: 2026-09-01T15:44:20.429Z
Reserved: 2026-06-25T13:48:11.990Z
Link: CVE-2026-13337
Updated: 2026-09-01T15:44:17.389Z
Status : Awaiting Analysis
Published: 2026-09-01T14:17:24.563
Modified: 2026-09-01T20:52:39.973
Link: CVE-2026-13337
No data.
OpenCVE Enrichment
Updated: 2026-09-01T15:30:04Z
