CVE-2023-26759: Smeup ERP

High severity, CVSS 8.8. EPSS: 2.4% chance of exploitation in the next 30 days.

Sme.UP ERP TOKYO V6R1M220406 was discovered to contain an OS command injection vulnerability via calls made to the XMService component.

Affected products

  • Smeup ERP: version tokyo_v6r1m220406 only

Published 2023-02-27. Last modified 2026-06-17.