Skip to main content
Loading…
    CVE-2026-48237 — Open ISES Tickets before 3.44.2 contains a SQL injection vulnerability in message.php where the frm_ticket_id and frm_resp_id POST parameters are concatenated into WHERE clauses of SELECT/UPDATE state — CVE Database · The Intelligence Room