CVE-2022-0495

The library automation system product KOHA developed by Parantez Teknoloji before version 19.05.03 has an unauthenticated SQL Injection vulnerability. This has been fixed in the version 19.05.03.01.
References
Link Resource
https://www.usom.gov.tr/bildirim/tr-22-0635 Third Party Advisory
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:parantezteknoloji:koha_library_automation:*:*:*:*:*:*:*:*

Information

Published : 2022-09-21 02:15

Updated : 2022-09-23 10:54


NVD link : CVE-2022-0495

Mitre link : CVE-2022-0495


JSON object : View

CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

Advertisement

dedicated server usa

Products Affected

parantezteknoloji

  • koha_library_automation