CRITICAL
SQL Injection in GullsEye Terminal Operating System
Published Jan 10, 2023
9.8
CRITICALCVSS 3.1
EPSS 14.19%
Description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in GullsEye GullsEye terminal operating system allows SQL Injection.
This issue affects GullsEye terminal operating system: from unspecified before 5.0.13.
Affected products
-
- Version 0StatusaffectedConstraints<5.0.13
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | ||||||
|---|---|---|---|---|---|---|---|---|---|
| GullsEye | GullsEye terminal operating system | unaffected |
|
- < 5.0.13
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (5)
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2022-43138 Advisory
- https://fordefence.com/cve-2022-3792-gullseye-terminal-operation-system/ exploitThird Party Advisory
- https://omrylmz.com/cve-2022-3792-terminal-operation-system/ exploitThird Party Advisory
- https://siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-22-0747-2 government-resource
- https://www.usom.gov.tr/bildirim/tr-22-0747-2 government-resourcebroken-linkExploitThird Party Advisory
| Link | Providers | Tags |
|---|---|---|
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2022-43138 | Advisory | |
| https://fordefence.com/cve-2022-3792-gullseye-terminal-operation-system/ | exploitThird Party Advisory | |
| https://omrylmz.com/cve-2022-3792-terminal-operation-system/ | exploitThird Party Advisory | |
| https://siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-22-0747-2 | government-resource | |
| https://www.usom.gov.tr/bildirim/tr-22-0747-2 | government-resourcebroken-linkExploitThird Party Advisory |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner TR-CERT
Published Jan 10, 2023
Updated May 20, 2026
Reserved Nov 1, 2022
Link CVE-2022-3792
CISA Vulnrichment
Updated Apr 9, 2025
ENISA EUVD
EUVD-2022-43138 Assigner TR-CERT
Published Jan 10, 2023
Updated May 20, 2026
Exploited since n/a
Link EUVD-2022-43138