Unrated severityNVD Advisory· Published Jul 15, 2026· Updated Jul 15, 2026
MetaGuru|HCM - SQL Injection
CVE-2026-15804
Description
The HCM developed by MetaGuru has a SQL Injection vulnerability. Authenticated remote attackers can inject SQL commands via specific parameters, thereby compromising the confidentiality, integrity, and availability of database data.
Affected products
1Patches
Vulnerability mechanics
References
2- www.twcert.org.tw/en/cp-139-11036-986ec-2.htmlmitrethird-party-advisory
- www.twcert.org.tw/tw/cp-132-11035-5c640-1.htmlmitrethird-party-advisory
News mentions
0No linked articles in our index yet.