cvelist/2023/6xxx/CVE-2023-6145.json

99 lines
3.2 KiB
JSON
Raw Normal View History

2023-11-15 08:00:36 +00:00
{
2023-12-21 14:00:33 +00:00
"data_version": "4.0",
2023-11-15 08:00:36 +00:00
"data_type": "CVE",
"data_format": "MITRE",
"CVE_data_meta": {
"ID": "CVE-2023-6145",
2023-12-21 14:00:33 +00:00
"ASSIGNER": "cve@usom.gov.tr",
"STATE": "PUBLIC"
2023-11-15 08:00:36 +00:00
},
"description": {
"description_data": [
{
"lang": "eng",
2023-12-21 14:00:33 +00:00
"value": "Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in \u0130stanbul Soft Informatics and Consultancy Limited Company Softomi Advanced C2C Marketplace Software allows SQL Injection.This issue affects Softomi Advanced C2C Marketplace Software: before 12122023.\n\n"
}
]
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')",
"cweId": "CWE-89"
}
]
}
]
},
"affects": {
"vendor": {
"vendor_data": [
{
"vendor_name": "\u0130stanbul Soft Informatics and Consultancy Limited Company",
"product": {
"product_data": [
{
"product_name": "Softomi Advanced C2C Marketplace Software",
"version": {
"version_data": [
{
"version_affected": "<",
"version_name": "0",
"version_value": "12122023"
}
]
}
}
]
}
}
]
}
},
"references": {
"reference_data": [
{
"url": "https://www.usom.gov.tr/bildirim/tr-23-0724",
"refsource": "MISC",
"name": "https://www.usom.gov.tr/bildirim/tr-23-0724"
}
]
},
"generator": {
"engine": "Vulnogram 0.1.0-dev"
},
"source": {
"advisory": "TR-23-0724",
"defect": [
"TR-23-0724"
],
"discovery": "UNKNOWN"
},
"credits": [
{
"lang": "en",
"value": " Furkan Ali Soysal"
}
],
"impact": {
"cvss": [
{
"attackComplexity": "LOW",
"attackVector": "NETWORK",
"availabilityImpact": "HIGH",
"baseScore": 9.8,
"baseSeverity": "CRITICAL",
"confidentialityImpact": "HIGH",
"integrityImpact": "HIGH",
"privilegesRequired": "NONE",
"scope": "UNCHANGED",
"userInteraction": "NONE",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
"version": "3.1"
2023-11-15 08:00:36 +00:00
}
]
}
}