Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Yordam Informatics Yordam Library Automation System allows SQL Injection.This issue affects Yordam Library Automation System: from 21.5 & 21.6 before 21.7.
History

Wed, 17 Sep 2025 13:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Wed, 17 Sep 2025 12:00:00 +0000

Type Values Removed Values Added
Description Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Yordam Informatics Yordam Library Automation System allows SQL Injection.This issue affects Yordam Library Automation System: from 21.5 & 21.6 before 21.7.
Title SQLi in Yordam Library Automation System
Weaknesses CWE-89
References
Metrics cvssV3_1

{'score': 9.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: TR-CERT

Published: 2025-09-17T11:45:49.521Z

Updated: 2025-09-17T13:08:26.961Z

Reserved: 2025-09-14T15:16:38.748Z

Link: CVE-2025-10439

cve-icon Vulnrichment

Updated: 2025-09-17T13:08:23.514Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-09-17T12:15:38.393

Modified: 2025-09-17T14:18:55.093

Link: CVE-2025-10439

cve-icon Redhat

No data.