CVE-2022-4557

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Group Arge Energy and Control Systems Smartpower Web allows SQL Injection.This issue affects Smartpower Web: before 23.01.01.
References
Link Resource
https://www.usom.gov.tr/bildirim/tr-23-0066 Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:gruparge:smartpower:*:*:*:*:*:*:*:*

History

05 Aug 2023, 16:15

Type Values Removed Values Added
Summary Improper Input Validation vulnerability in Group Arge Energy and Control Systems Smartpower Web allows SQL Injection. This issue affects Smartpower Web: before 23.01.01. Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Group Arge Energy and Control Systems Smartpower Web allows SQL Injection.This issue affects Smartpower Web: before 23.01.01.

23 Jun 2023, 16:19

Type Values Removed Values Added
CWE CWE-20 CWE-89

Information

Published : 2023-02-12 04:15

Updated : 2024-02-28 19:51


NVD link : CVE-2022-4557

Mitre link : CVE-2022-4557

CVE.ORG link : CVE-2022-4557


JSON object : View

Products Affected

gruparge

  • smartpower
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')