CVE-2026-15929

Published Jul 30, 2026

Last updated 4 days ago

CVSS high 7.1
Microsoft Windows
SmartShare
LG

Overview

AI description

Automated description summarized from trusted sources.

CVE-2026-15929 describes an SQL injection vulnerability found in LG Electronics SmartShare. This flaw stems from the improper neutralization of special elements within an SQL command. The vulnerability affects versions of LG SmartShare up to and including 2.3.1712.1202, which operates on Microsoft Windows 10 and earlier versions.

Description
Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in LG Electronics SmartShare allows SQL Injection. This issue affects SmartShare: through 2.3.1712.1202, which is supported on Microsoft Windows 10 and earlier versions.
Source
product.security@lge.com
NVD status
Deferred
CNA Tags
unsupported-when-assigned

Risk scores

CVSS 4.0

Type
Secondary
Base score
7.1
Impact score
-
Exploitability score
-
Vector string
CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:H/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Severity
HIGH

Weaknesses

product.security@lge.com
CWE-89

Social media

Hype score is a measure of social media activity compared against trending CVEs from the past 12 months. Max score 100.

Hype score

64

References

Sources include official advisories and independent security research.