PatchSiren

Mergen Software CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

CRITICAL Mergen Software CVE published 2024-01-18

CVE-2023-5806

CVE-2023-5806 is a critical SQL injection vulnerability affecting Mergentech Quality Management System versions before 1.2. NVD assigns a CVSS 3.1 score of 9.8, reflecting a network-reachable issue with no required privileges or user interaction and high impact to confidentiality, integrity, and availability. Organizations running affected versions should treat this as an urgent remediation item and move [truncated]