Home
MEDIUM: 6.9 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:NDefault status
unaffected
Any version before 5.0
affected
Description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TE Informatics Nova CMS allows SQL Injection. This issue affects Nova CMS: before 5.0.
Problem types
CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
Product status
Any version before 5.0
Credits
Ali Kaan BASHAN
References
www.usom.gov.tr/bildirim/tr-24-1661
siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-24-1661