SOGo before 5.12.7, when PostgreSQL is used, allows SQL injection.
Metrics
Affected Vendors & Products
References
History
Thu, 14 May 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 14 May 2026 04:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | SOGo Webmail Server SQL Injection via PostgreSQL |
Thu, 14 May 2026 03:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | SOGo before 5.12.7, when PostgreSQL is used, allows SQL injection. | |
| First Time appeared |
Alinto
Alinto sogo |
|
| Weaknesses | CWE-89 | |
| CPEs | cpe:2.3:a:alinto:sogo:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Alinto
Alinto sogo |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: mitre
Published: 2026-05-14T03:10:32.528Z
Updated: 2026-05-14T13:54:20.100Z
Reserved: 2026-05-14T03:10:31.633Z
Link: CVE-2026-46445
Updated: 2026-05-14T13:54:16.436Z
Status : Deferred
Published: 2026-05-14T04:17:03.193
Modified: 2026-05-14T16:49:18.583
Link: CVE-2026-46445
No data.