CVE Published: 21/09/2022 |
CVE Updated: 17/09/2024 |
CVE Year: 2022 Source: TR-CERT |
Vendor: Parantez Teknoloji |
Product: Parantez Teknoloji Status : PUBLISHED
CVE-2022-0495 Description
The library automation system product KOHA developed by Parantez Teknoloji before version 19.05.03 has an unauthenticated SQL Injection vulnerability. This has been fixed in the version 19.05.03.01.
Metrics
CVSS Version: 3.1 |
Base Score: 9.4 CRITICAL Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L