THREAT OPS › Threat News › Security advisory: Authenticated RCE (second-order SQL injection) in Lansweeper 12.2.1.0 (web reports 12.2.1.6) (Lansweeper)
Security advisory: Authenticated RCE (second-order SQL injection) in Lansweeper 12.2.1.0 (web reports 12.2.1.6) (Lansweeper)
<p>Posted by disclosure via Fulldisclosure on Aug 17</p>0day Rubbish Research Team is publicly disclosing a vulnerability in Lansweeper 12.2.1.0 (web reports 12.2.1.6) <br /> (Lansweeper). The research is published and a proof-of-concept is available.<br /> <br /> Authenticated RCE (second-order SQL injection) (CVSS 8.8, authenticated)<br /> <br /> Lansweeper 12.2.1.0 contains a second-order SQL i
Indicators of compromise
- 12.2.1.0ipv4
- 12.2.1.6ipv4
Original source: https://seclists.org/fulldisclosure/2026/Aug/63