CVE-2026-4815
UNKNOWN
NVD
CVSS Score
0
Severity
UNKNOWN
Published
Mar 25, 2026
Vendor
unknown
Description
A SQL Injection vulnerability has been found in Support Board v3.7.7. This vulnerability allows an attacker to retrieve, create, update and delete database via 'calls[0][message_ids][]' parameter in '/supportboard/include/ajax.php' endpoint.