CVE-2025-1929

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Risk Yazlm Teknolojileri Ltd. ti. Reel Sektr Hazine ve Risk Ynetimi Yazlm allows SQL Injection, CAPEC - 7 - Blind SQL Injection.This issue affects Reel Sektr Hazine ve Risk Ynetimi Yazlm: through 1.0.0.4.
SQL Injection
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.2 HIGH
NETWORK
LOW
HIGH
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
TR-CERTCNA
7.2 HIGH
NETWORK
LOW
HIGH
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
CISA-ADPADP
---
---