{ "dataType": "CVE_RECORD", "dataVersion": "5.2", "cveMetadata": { "cveId": "CVE-2026-59508", "assignerOrgId": "a57ee1ae-c9c1-4f40-aa7b-cf10760fde3f", "state": "PUBLISHED", "assignerShortName": "INCD", "dateReserved": "2026-07-05T09:17:53.013Z", "datePublished": "2026-10-11T17:51:21.655Z", "dateUpdated": "2026-10-11T17:51:21.655Z" }, "containers": { "cna": { "providerMetadata": { "orgId": "a57ee1ae-c9c1-4f40-aa7b-cf10760fde3f", "shortName": "INCD", "dateUpdated": "2026-10-11T17:51:21.655Z" }, "title": "Interuse i-Bos CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')", "datePublic": "2026-10-11T17:44:00.000Z", "problemTypes": [ { "descriptions": [ { "lang": "en", "cweId": "CWE-89", "description": "CWE-89 Improper neutralization of special elements used in an SQL command ('SQL injection')", "type": "CWE" } ] } ], "affected": [ { "vendor": "Interuse", "product": "i-Bos", "versions": [ { "status": "affected", "version": "3.0" } ], "defaultStatus": "unaffected" } ], "descriptions": [ { "lang": "en", "value": "Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Interuse i-Bos.\n\nThis issue affects i-Bos: 3.0.", "supportingMedia": [ { "type": "text/html", "base64": false, "value": "Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Interuse i-Bos.
This issue affects i-Bos: 3.0.
" } ] } ], "references": [ { "url": "https://www.gov.il/en/departments/dynamiccollectors/cve_advisories_listing?skip=0" } ], "metrics": [ { "format": "CVSS", "scenarios": [ { "lang": "en", "value": "GENERAL" } ], "cvssV3_1": { "version": "3.1", "attackVector": "NETWORK", "attackComplexity": "HIGH", "privilegesRequired": "NONE", "userInteraction": "NONE", "scope": "UNCHANGED", "confidentialityImpact": "HIGH", "integrityImpact": "NONE", "availabilityImpact": "NONE", "baseSeverity": "MEDIUM", "baseScore": 5.9, "vectorString": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N" } } ], "solutions": [ { "lang": "en", "value": "Upgrade to latest version.", "supportingMedia": [ { "type": "text/html", "base64": false, "value": "Upgrade to latest version." } ] } ], "credits": [ { "lang": "en", "value": "Daniel Mangesto", "type": "finder" } ], "source": { "advisory": "ILVN-2026-0274", "discovery": "UNKNOWN" }, "x_generator": { "engine": "Vulnogram 1.0.5" } } } }