CVE-2026-51821

SQL-Injektionsanfälligkeit im ShenZhou ShiHan Videokonferenzsystem v.

criticalEPSS 0.8%

Description

SQL Injection vulnerability in Shenzhou Shihan Video Conference System v.1.0 allows a remote attacker to execute arbitrary code via the /user/getUserLogin endpoint

Metrics

9.8
Source: nvd-v3
54.2 %
High — this CVE ranks above the median of all CVEs scored today (rank ≥ 36%).
Show all metrics
Severity
critical
no public PoC known
0.8 %
Low — model estimates < 1% exploitation likelihood.
Published
2026-07-13 22:16 UTC

References & sources

Linked advisories