Description

An Improper Neutralization of Special Elements used in an SQL Command vulnerability (CWE-89) allowing SQL Injection in Dolusoft Omaspot. Affects versions before 12.09.2025. CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H.

CVSS Vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

References

Disclosure Timeline

Found Vulnerability discovered during authorized security research on Dolusoft Omaspot
Reported Submitted to vendor / TR-CERT with technical details and reproduction steps
Published CVE assigned and published — 2025-09-16