CVE-2026-80298: fallo de gravedad alta en HAVELSAN Inc. Sef - AI Chatbot Platform
SQL Injection in HAVELSAN's Sef - AI Chatbot Platform
Publicada el
21Vexday Risk Score
Sin señal de explotación. Ningún artefacto público de explotación conocido hasta ahora.
ssvc Trackcvss 8.8epss 0.3%
probabilidad de explotación
0.3%top 80% de las CVE
explotación observada
noninguna fuente lo reporta
Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in HAVELSAN Inc. Sef - AI Chatbot Platform allows SQL Injection.
This issue affects Sef - AI Chatbot Platform: before 2.1. NOTE: The vendor was contacted and it was learned that the product is not supported.
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Productos afectados
HAVELSAN Inc. · Sef - AI Chatbot PlatformCVEs relacionadas — HAVELSAN Inc. Sef - AI Chatbot Platform
En el mismo producto, de las más peligrosas a las menos.
CVE-2026-80464MEDIUMAPI Tool Runner SSRF in HAVELSAN's Sef - AI Chatbot PlatformEPSS 0.3%CVE-2026-80337MEDIUMUnauthorized Cross-Chatbot Tool Invocation in HAVELSAN's Sef - AI Chatbot PlatformEPSS 0.2%CVE-2026-80443HIGHInsecure TLS Certificate Validation in API Tool Runner in HAVELSAN's Sef - AI Chatbot PlatformEPSS 0.2%