CVE-2023-6436

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Ekol Informatics Website Template allows SQL Injection.This issue affects Website Template: through 20231215.
References
Link Resource
https://www.usom.gov.tr/bildirim/tr-24-0001 Third Party Advisory
https://www.usom.gov.tr/bildirim/tr-24-0001 Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:ekolbilisim:web_sablonu_yazilimi:*:*:*:*:*:*:*:*

History

21 Nov 2024, 08:43

Type Values Removed Values Added
References () https://www.usom.gov.tr/bildirim/tr-24-0001 - Third Party Advisory () https://www.usom.gov.tr/bildirim/tr-24-0001 - Third Party Advisory

08 Jan 2024, 19:40

Type Values Removed Values Added
First Time Ekolbilisim
Ekolbilisim web Sablonu Yazilimi
References () https://www.usom.gov.tr/bildirim/tr-24-0001 - () https://www.usom.gov.tr/bildirim/tr-24-0001 - Third Party Advisory
CPE cpe:2.3:a:ekolbilisim:web_sablonu_yazilimi:*:*:*:*:*:*:*:*
Summary
  • (es) La neutralización inadecuada de elementos especiales utilizados en una vulnerabilidad de comando SQL ("Inyección SQL") en Ekol Informatics Website Template permite la inyección de SQL. Este problema afecta a Website Template: hasta 20231215.

02 Jan 2024, 13:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-01-02 13:15

Updated : 2024-11-21 08:43


NVD link : CVE-2023-6436

Mitre link : CVE-2023-6436

CVE.ORG link : CVE-2023-6436


JSON object : View

Products Affected

ekolbilisim

  • web_sablonu_yazilimi
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')