CVE Published: 10/03/2023 |
CVE Updated: 02/08/2024 |
CVE Year: 2023 Source: TR-CERT |
Vendor: Alpata |
Product: Licensed Warehousing Automation System Status : PUBLISHED
CVE-2023-1091 Description
Improper Neutralization of Special Elements used in an SQL Command (\'SQL Injection\') vulnerability in Alpata Licensed Warehousing Automation System allows Command Line Execution through SQL Injection.This issue affects Licensed Warehousing Automation System: through 2023.1.01.
Metrics
CVSS Version: 3.1 |
Base Score: 9.8 CRITICAL Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H