VYPR
Critical severity9.8NVD Advisory· Published Jan 10, 2023· Updated May 20, 2026

CVE-2022-3792

CVE-2022-3792

Description

SQL injection in GullsEye terminal OS before 5.0.13 allows unauthenticated attackers to execute arbitrary SQL commands via improper input neutralization.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

SQL injection in GullsEye terminal OS before 5.0.13 allows unauthenticated attackers to execute arbitrary SQL commands via improper input neutralization.

Vulnerability

CVE-2022-3792 describes a SQL injection vulnerability in GullsEye terminal operating system versions prior to 5.0.13 [1]. The software fails to properly neutralize special elements used in SQL commands, allowing attackers to inject malicious SQL queries.

Exploitation

The vulnerability can be exploited remotely without authentication, as the terminal OS likely exposes a web interface or API that accepts user input directly into SQL queries. No special network position is required beyond network access to the affected service.

Impact

Successful exploitation allows an attacker to read, modify, or delete database contents, potentially compromising sensitive data such as user credentials, transaction records, or configuration details. In some cases, this can lead to full compromise of the underlying system.

Mitigation

The issue is fixed in version 5.0.13 of GullsEye terminal OS. Users are strongly advised to upgrade immediately.

AI Insight generated on May 20, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.

Affected products

2

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

4

News mentions

0

No linked articles in our index yet.