Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Mydata Informatics Ticket Sales Automation allows Blind SQL Injection.This issue affects Ticket Sales Automation: before 03.04.2025 (DD.MM.YYYY).
References
Link | Resource |
---|---|
https://github.com/sahici/CVE-2025-2812/ | |
https://www.usom.gov.tr/bildirim/tr-25-0099 | Third Party Advisory |
Configurations
History
28 May 2025, 15:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-05-02 09:15
Updated : 2025-05-28 15:15
NVD link : CVE-2025-2812
Mitre link : CVE-2025-2812
CVE.ORG link : CVE-2025-2812
JSON object : View
Products Affected
mydata
- ticket_sales_automation
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')