CVE-2023-1547

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Elra Parkmatik allows SQL Injection through SOAP Parameter Tampering, Command Line Execution through SQL Injection.This issue affects Parkmatik: before 02.01-a51.
References
Link Resource
https://www.usom.gov.tr/bildirim/tr-23-0404 Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:elra:parkmatik:*:*:*:*:*:*:*:*

History

20 Jul 2023, 21:29

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 10.0
v2 : unknown
v3 : 9.8
CPE cpe:2.3:a:elra:parkmatik:*:*:*:*:*:*:*:*
References (MISC) https://www.usom.gov.tr/bildirim/tr-23-0404 - (MISC) https://www.usom.gov.tr/bildirim/tr-23-0404 - Third Party Advisory
First Time Elra
Elra parkmatik

13 Jul 2023, 08:32

Type Values Removed Values Added
New CVE

Information

Published : 2023-07-13 08:15

Updated : 2024-02-28 20:33


NVD link : CVE-2023-1547

Mitre link : CVE-2023-1547

CVE.ORG link : CVE-2023-1547


JSON object : View

Products Affected

elra

  • parkmatik
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')