Home
CRITICAL: 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HDefault status
unaffected
Any version before V2.0.1
affected
Description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Case Informatics Case ERP allows SQL Injection. This issue affects Case ERP: before V2.0.1.
Problem types
CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
Product status
Any version before V2.0.1
Credits
Hüseyin ÜZÜM
References
www.usom.gov.tr/bildirim/tr-25-0139
siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-25-0139