CVE-2026-44047

An SQL injection vulnerability in the MySQL CNID backend in Netatalk 3.1.0 through 4.4.2 allows a remote authenticated attacker to obtain unauthorized access to data, modify data, or cause a denial of service.
Configurations

No configuration.

History

21 May 2026, 09:16

Type Values Removed Values Added
Summary (en) In Netatalk 3.1.0 through 4.4.2, sql injection in mysql cnid backend. Fixed in 4.4.3. (en) An SQL injection vulnerability in the MySQL CNID backend in Netatalk 3.1.0 through 4.4.2 allows a remote authenticated attacker to obtain unauthorized access to data, modify data, or cause a denial of service.

21 May 2026, 08:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-05-21 08:16

Updated : 2026-05-21 15:20


NVD link : CVE-2026-44047

Mitre link : CVE-2026-44047

CVE.ORG link : CVE-2026-44047


JSON object : View

Products Affected

No product.

CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')