CVE-2022-3792
Description
SQL injection in GullsEye terminal OS before 5.0.13 allows unauthenticated attackers to execute arbitrary SQL commands via improper input neutralization.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
SQL injection in GullsEye terminal OS before 5.0.13 allows unauthenticated attackers to execute arbitrary SQL commands via improper input neutralization.
Vulnerability
CVE-2022-3792 describes a SQL injection vulnerability in GullsEye terminal operating system versions prior to 5.0.13 [1]. The software fails to properly neutralize special elements used in SQL commands, allowing attackers to inject malicious SQL queries.
Exploitation
The vulnerability can be exploited remotely without authentication, as the terminal OS likely exposes a web interface or API that accepts user input directly into SQL queries. No special network position is required beyond network access to the affected service.
Impact
Successful exploitation allows an attacker to read, modify, or delete database contents, potentially compromising sensitive data such as user credentials, transaction records, or configuration details. In some cases, this can lead to full compromise of the underlying system.
Mitigation
The issue is fixed in version 5.0.13 of GullsEye terminal OS. Users are strongly advised to upgrade immediately.
AI Insight generated on May 20, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.
Affected products
2<5.0.13+ 1 more
- (no CPE)range: <5.0.13
- (no CPE)range: 0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4- fordefence.com/cve-2022-3792-gullseye-terminal-operation-system/nvdExploitThird Party Advisory
- omrylmz.com/cve-2022-3792-terminal-operation-system/nvdExploitThird Party Advisory
- www.usom.gov.tr/bildirim/tr-22-0747-2nvdExploitThird Party Advisory
- siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-22-0747-2nvd
News mentions
0No linked articles in our index yet.