SQL Injection Vulnerability in Reel Sektör Hazine ve Risk Yönetimi Software by Risk Yazılım Teknolojileri
CVE-2025-1929

7.2HIGH

What is CVE-2025-1929?

An SQL Injection vulnerability exists in the Reel Sektör Hazine ve Risk Yönetimi Yazılımı developed by Risk Yazılım Teknolojileri. This security flaw allows attackers to manipulate SQL queries by injecting arbitrary SQL code through unsanitized input. The vulnerability potentially exposes sensitive data or allows unauthorized actions within the application. This issue affects version 1.0.0.4 of the software, underscoring the importance of implementing robust input validation and security measures.

Affected Version(s)

Reel Sektör Hazine ve Risk Yönetimi Yazılımı 0 <= 1.0.0.4

References

CVSS V3.1

Score:
7.2
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Ertuğrul KUZGUN
.
CVE-2025-1929 : SQL Injection Vulnerability in Reel Sektör Hazine ve Risk Yönetimi Software by Risk Yazılım Teknolojileri