top of page
perceptive_background_267k.jpg

Borg SPM 2007 (Sales Ended in 2008) developed by BorG Technology Corporation has a SQL Injection vulnerability, allowing unauthenticated remote attackers to inj…

Published:

22 april 2026 om 22:00:00

Alert date:

23 april 2026 om 11:02:17

Source:

nvd.nist.gov

Click to open the original link from this advisory

Enterprise Applications, Database & Storage

CVE-2026-6887 affects Borg SPM 2007, a sales management system developed by BorG Technology Corporation (sales ended in 2008). The vulnerability allows unauthenticated remote attackers to perform SQL injection attacks, enabling them to inject arbitrary SQL commands into the database. Attackers can exploit this vulnerability to read sensitive data from the database, modify existing records, or delete database contents entirely. Despite the product being discontinued, systems may still be in use and vulnerable to attack. The vulnerability poses significant risk due to the lack of authentication requirements and the potential for complete database compromise.

Technical details

Mitigation steps:

Affected products:

Borg SPM 2007

Related links:

Related CVE's:

Related threat actors:

IOC's:

This article was created with the assistance of AI technology by Perceptive.

© 2025 by Perceptive Security. All rights reserved.

email: info@perceptivesecurity.com

Deze website toont informatie afkomstig van externe bronnen; Perceptive aanvaardt geen verantwoordelijkheid voor de juistheid, volledigheid of actualiteit van deze informatie.

bottom of page