Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
9.8

CVE-2026-5801: SEM-PMP Allows Unwanted Code Execution

CVE-2026-5801 CVE-2026-5801
Summary

A security issue in SEM-PMP allows hackers to execute malicious commands. This affects SEM-PMP versions up to April 23, 2023. To stay safe, update SEM-PMP to the latest version or consider replacing it with a more secure alternative.

What to do

No fix is available yet. Check with your software vendor for updates.

Affected software
VendorProductAffected versions
semtek informatics software consulting trade ltd. co. sem-pmp <= 23042026
Original title
Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Semtek Informatics Software Consulting Trade Ltd. Co. SEM-PMP allows Command Line Execution thr...
Original description
Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Semtek Informatics Software Consulting Trade Ltd. Co. SEM-PMP allows Command Line Execution through SQL Injection.

This issue affects SEM-PMP: through 23042026.
mitre CVSS3.1 9.8
Vulnerability type
CWE-89 SQL Injection
Published: 10 Jul 2026 · Updated: 20 Jul 2026 · First seen: 10 Jul 2026