Description
The "pattern" parameter used in search function in the home page of the TMS application is vulnerable to time-based blind SQL injection vulnerability.
Published: 2026-09-29
Score: 8.5 High
EPSS: < 1% Very Low
KEV: No
Impact: Blind SQL injection
Action: Patch Now
AI Analysis

Impact

The 'pattern' parameter in the TMS home page search function is vulnerable to a time‑based blind SQL injection, allowing an attacker to extract database information by measuring response delays. This leads to significant confidentiality risks and aligns with CWE‑89, which denotes SQL injection weaknesses.

Affected Systems

The flaw affects Toptech Systems products TMS7 and TopHAT, and versions prior to release 7.8 are vulnerable. The vendor’s advisory indicates that update 7.8 mitigates the issue.

Risk and Exploitability

The CVSS score of 8.5 classifies the vulnerability as high severity. EPSS data is lacking and the flaw is not listed in CISA KEV, suggesting no known active exploitation. However, the attack can be carried out remotely without authentication or privileged access, making the exploit path straightforward and posing a significant risk of confidential data exposure.

Generated by OpenCVE AI on September 30, 2026 at 10:48 UTC.

Remediation

Vendor Solution

Toptech Systems sent a security advisory to their customers on July 20, 2026. The issue has been addressed in release 7.8. Users can get the latest release and more information on this issue at the Toptech Systems security blog. https://www.toptech.com/blog/tms7-version-7-8-strengthens-security


OpenCVE Recommended Actions

  • Upgrade Toptech Systems TMS7 and TopHAT to release 7.8 or later, following the vendor advisory.
  • If immediate patching is not feasible, block or restrict the 'pattern' query parameter on the home page to reduce the attack surface.
  • Implement input validation or parameterized query handling for the 'pattern' parameter to prevent injection if an upgrade is not possible.

Generated by OpenCVE AI on September 30, 2026 at 10:48 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 29 Sep 2026 21:45:00 +0000

Type Values Removed Values Added
Description The "pattern" parameter used in search function in the home page of the TMS application is vulnerable to time-based blind SQL injection vulnerability.
Title Toptech TMS7 and TopHAT SQL Injection
Weaknesses CWE-89
References
Metrics cvssV3_1

{'score': 9, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:L/A:H'}

cvssV4_0

{'score': 8.5, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:L/VA:H/SC:H/SI:L/SA:H'}


Subscriptions

No data.

cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published:

Updated: 2026-09-30T15:28:14.972Z

Reserved: 2026-08-10T17:31:09.972Z

Link: CVE-2026-68954

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-09-29T22:17:21.847

Modified: 2026-09-30T16:46:43.953

Link: CVE-2026-68954

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-30T11:00:17Z

Weaknesses
  • CWE-89

    Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')