SEPTEMBER 18, 2026
Live Feed
Back to database
Case File

CVE-2026-5801

CRITICAL · CVSS 9.8 EPSS 0.40%

Source: NVD + CISA KEV + EPSS · Published 2026-07-10 · Last synced 2026-08-09

CyberRota Analysis

AI-Generated

The vulnerability in Semtek Informatics SEM-PMP allows for SQL injection, enabling attackers to execute arbitrary commands through the command line. This critical flaw, with a CVSS score of 9.8, poses a significant risk to any organization using this software, as it could lead to unauthorized access and control over affected systems. Organizations utilizing SEM-PMP should prioritize immediate remediation efforts to mitigate potential exploitation.

CVE
CVE-2026-5801
Severity
CRITICAL
CVSS
9.8
EPSS
0.40%

Original NVD Description

Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Semtek Informatics Software Consulting Trade Ltd. Co. SEM-PMP allows Command Line Execution through SQL Injection. This issue affects SEM-PMP: through 23042026.