Description
Authorization Bypass Through User-Controlled SQL Primary Key vulnerability in DATABASE Software Training Consulting Ltd. Databank Accreditation Software allows SQL Injection.This issue affects Databank Accreditation Software: through 19022026. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
Problem types
CWE-566 Authorization Bypass Through User-Controlled SQL Primary Key
Product status
Any version
Credits
Veli Oğuzcan AKDAĞ
References
www.usom.gov.tr/bildirim/tr-26-0078