Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-18686 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Yirmibes Software MY ERP allows SQL Injection.This issue affects MY ERP: before 1.170. |
| Link | Providers |
|---|---|
| https://www.usom.gov.tr/bildirim/tr-25-0132 |
|
Fri, 20 Jun 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 19 Jun 2025 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Yirmibes Software MY ERP allows SQL Injection.This issue affects MY ERP: before 1.170. | |
| Title | Authenticated SQLi in Yirmibes Software's MY ERP | |
| Weaknesses | CWE-89 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: TR-CERT
Published:
Updated: 2025-06-20T13:11:17.057Z
Reserved: 2025-05-15T07:53:03.486Z
Link: CVE-2025-4738
Updated: 2025-06-20T13:08:30.244Z
Status : Deferred
Published: 2025-06-19T13:15:51.840
Modified: 2026-04-15T00:35:42.020
Link: CVE-2025-4738
No data.
OpenCVE Enrichment
No data.
EUVD