Description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Yordam Informatics Yordam Library Automation System allows SQL Injection.This issue affects Yordam Library Automation System: from 21.5 & 21.6 before 21.7.
Problem types
CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
Product status
21.5 & 21.6 (custom) before 21.7
Credits
Muhammet Talha ODABAŞI
Sarp Dora YÖNDEN
Abdurrahman Emre ÖZKÖK
References
www.usom.gov.tr/bildirim/tr-25-0268