Description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TRtek Software Education Portal allows SQL Injection. This issue affects Education Portal: before 3.2023.29.
Problem types
CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
Product status
Any version before 3.2023.29
Credits
Alican OZDEMIR
References
www.usom.gov.tr/bildirim/tr-23-0608
www.usom.gov.tr/bildirim/tr-23-0608
siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-23-0608