CVE-2022-48082: Easyone CRM

Critical severity, CVSS 9.8. EPSS: 0.6% chance of exploitation in the next 30 days.

Easyone CRM v5.50.02 was discovered to contain a SQL Injection vulnerability via the text parameter at /Services/Misc.asmx/SearchTag.

Affected products

  • Easyone Easyone CRM: version 5.50.02 only

Published 2023-02-02. Last modified 2026-06-17.