Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
9.8
CVE-2026-18210: TRtek Store could let attackers steal or alter data
CVE-2026-18210 · published 2 days ago
Summary
The online store component of TRtek's products, up to version 030631b2, does not properly filter the information it receives. This allows a malicious user to insert harmful commands into the database, enabling them to view, change or delete business data. Install the latest update from TRtek or contact the vendor for a patch as soon as possible.
What to do
- Update trtek technological products computer software hardware industry and trade limited company products's store to version 030631b2 or later.
Affected software
| Vendor | Product | Affected versions |
|---|---|---|
| trtek technological products computer software hardware industry and trade limited company | products's store | < 030631b2 |
Original advisory text
SQL Injection in TRtek Technological Products's Store
Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in TRtek Technological Products Computer Software Hardware Industry and Trade Limited Company Products's Store allows SQL Injection.
This issue affects Products's Store: before 030631b2.
This issue affects Products's Store: before 030631b2.
Severity
9.8
Critical
CVSS 3.1: 9.8 (NVD)
Exploitation
EPSS <1%
Type
CWE-89SQL Injection
Timeline
Published1 Sep 2026
Updated2 Sep 2026
First seen1 Sep 2026
Monitor software like this
Free during beta