Description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Mydata Informatics Ticket Sales Automation allows Blind SQL Injection.This issue affects Ticket Sales Automation: before 03.04.2025 (DD.MM.YYYY).
Problem types
CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
Product status
Any version before 03.04.2025 (DD.MM.YYYY)
Credits
Hasan Yasin YASAR
References
www.usom.gov.tr/bildirim/tr-25-0099
github.com/sahici/CVE-2025-2812/
Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.