CVE-2025-2812

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Mydata Informatics Ticket Sales Automation allows Blind SQL Injection.This issue affects Ticket Sales Automation: before 03.04.2025 (DD.MM.YYYY).
CVSS

No CVSS.

Configurations

Configuration 1 (hide)

cpe:2.3:a:mydata:ticket_sales_automation:*:*:*:*:*:*:*:*

History

28 May 2025, 15:15

Type Values Removed Values Added
CWE CWE-89
References
  • () https://github.com/sahici/CVE-2025-2812/ -
CVSS v2 : unknown
v3 : 9.8
v2 : unknown
v3 : unknown

07 May 2025, 17:17

Type Values Removed Values Added
CPE cpe:2.3:a:mydata:ticket_sales_automation:*:*:*:*:*:*:*:*
First Time Mydata
Mydata ticket Sales Automation
References () https://www.usom.gov.tr/bildirim/tr-25-0099 - () https://www.usom.gov.tr/bildirim/tr-25-0099 - Third Party Advisory

02 May 2025, 09:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-05-02 09:15

Updated : 2025-05-28 15:15


NVD link : CVE-2025-2812

Mitre link : CVE-2025-2812


JSON object : View

Products Affected

mydata

  • ticket_sales_automation
CWE

No CWE.