Metrics
Affected Vendors & Products
Mon, 02 Mar 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
cvssV3_1
|
Thu, 26 Feb 2026 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:web-ofisi:emlak:2.0.0:*:*:*:*:*:*:* |
Wed, 25 Feb 2026 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 23 Feb 2026 15:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Web-ofisi
Web-ofisi emlak |
|
| Vendors & Products |
Web-ofisi
Web-ofisi emlak |
Sun, 22 Feb 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Web Ofisi Emlak v2 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the 'ara' GET parameter. Attackers can send requests to with time-based SQL injection payloads to extract sensitive database information or cause denial of service. | |
| Title | Web Ofisi Emlak v2 SQL Injection via ara Parameter | |
| Weaknesses | CWE-89 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published: 2026-02-22T14:12:10.439Z
Updated: 2026-03-02T14:49:38.607Z
Reserved: 2026-02-22T13:57:34.791Z
Link: CVE-2019-25456
Updated: 2026-02-25T16:01:02.860Z
Status : Modified
Published: 2026-02-22T15:16:15.187
Modified: 2026-03-02T15:16:25.250
Link: CVE-2019-25456
No data.