Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in SFS Consulting Information Processing Industry and Foreign Trade Inc. Winsure allows Blind SQL Injection.This issue affects Winsure: through Version dated 21.08.2025.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://www.usom.gov.tr/bildirim/tr-25-0337 |
|
History
Tue, 21 Oct 2025 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Sfs
Sfs winsure |
|
| Vendors & Products |
Sfs
Sfs winsure |
Tue, 14 Oct 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 14 Oct 2025 13:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in SFS Consulting Information Processing Industry and Foreign Trade Inc. Winsure allows Blind SQL Injection.This issue affects Winsure: through Version dated 21.08.2025. | |
| Title | SQLi in SFS Winsure | |
| Weaknesses | CWE-89 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: TR-CERT
Published: 2025-10-14T12:43:37.800Z
Updated: 2025-10-14T13:12:26.765Z
Reserved: 2025-09-17T07:43:02.510Z
Link: CVE-2025-10610
Updated: 2025-10-14T13:12:21.232Z
Status : Awaiting Analysis
Published: 2025-10-14T13:15:36.597
Modified: 2025-10-14T19:36:29.240
Link: CVE-2025-10610
No data.