Description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection'), CWE - 200 - Exposure of Sensitive Information to an Unauthorized Actor, CWE - 522 - Insufficiently Protected Credentials vulnerability in Magarsus Consultancy SSO (Single Sign On) allows SQL Injection.This issue affects SSO (Single Sign On): from 1.0 before 1.1.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-32780 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection'), CWE - 200 - Exposure of Sensitive Information to an Unauthorized Actor, CWE - 522 - Insufficiently Protected Credentials vulnerability in Magarsus Consultancy SSO (Single Sign On) allows SQL Injection.This issue affects SSO (Single Sign On): from 1.0 before 1.1. |
References
| Link | Providers |
|---|---|
| https://www.usom.gov.tr/bildirim/tr-24-0800 |
|
History
No history.
Subscriptions
No data.
Status: PUBLISHED
Assigner: TR-CERT
Published:
Updated: 2024-08-01T20:33:52.991Z
Reserved: 2024-04-26T08:52:49.703Z
Link: CVE-2024-4228
Updated: 2024-08-01T20:33:52.991Z
Status : Deferred
Published: 2024-06-26T15:15:19.977
Modified: 2026-04-15T00:35:42.020
Link: CVE-2024-4228
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD