Description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Erikoglu Technology ErMon allows Command Line Execution through SQL Injection, Authentication Bypass. This issue affects ErMon: before 230602.
Problem types
CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
Product status
Any version before 230602
Credits
Gokhan UYGAN
References
www.usom.gov.tr/bildirim/tr-23-0315
www.usom.gov.tr/bildirim/tr-23-0315
siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-23-0315