Description

An Improper Neutralization of Special Elements used in an SQL Command vulnerability (CWE-89) allowing SQL Injection in Akıllı Ticaret's E-Commerce Website. Affects versions before 4.5.001. CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H.

CVSS Vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

References

Disclosure Timeline

Found Vulnerability discovered during authorized security research on Akıllı Ticaret E-Commerce Website
Reported Submitted to vendor / TR-CERT with technical details and reproduction steps
Published CVE assigned and published — 2026-05-12