What is CVE-2026-52472?
CVE-2026-52472 is an SQL injection vulnerability in Wgcloud 3.6.4 that allows a remote attacker to escalate privileges through the PortInfoMapper.xml file. Affected systems should apply security patches immediately to mitigate the risk.
Azərbaycanca: CVE-2026-52472, Wgcloud 3.6.4 versiyasında aşkarlanmış SQL injection zəifliyidir. Bu qüsur `PortInfoMapper.xml` faylı vasitəsilə uzaqdan hücum edən şəxsə imtiyazları yüksəltməyə imkan verir. Təsirə məruz qalan sistemlərdə dərhal təhlükəsizlik yaması tətbiq edilməlidir.
Related CVEs
link basis: same weakness class CWE-89
FAQ2
Which product does CVE-2026-52472 affect?
This vulnerability affects Wgcloud version 3.6.4.
How can CVE-2026-52472 be exploited?
A remote attacker can attempt privilege escalation by performing SQL injection through the `PortInfoMapper.xml` file.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.