Download of code without integrity check, inclusion of functionality from untrusted control sphere, and cleartext
transmission of sensitive information vulnerability in Ozols Grupa OZOLS
on Windows caused by an abandoned auto-update domain. Affected
component: the automatic update channel - OzolsSQL client update path, the <db>_update SQL Server Agent job (@subsystem = N'ActiveScripting') and serv_update.vbs.
This issue affects OZOLS: before 1.1.1233.
References
Configurations
No configuration.
History
No history.
Information
Published : 2026-08-19 20:17
Updated : 2026-09-01 21:07
NVD link : CVE-2026-22306
Mitre link : CVE-2026-22306
CVE.ORG link : CVE-2026-22306
JSON object : View
Products Affected
No product.
