Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Vestel EVC04 Configuration Interface allows SQL Injection.This issue affects EVC04 Configuration Interface: before V3.187, V4.53.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://www.usom.gov.tr/bildirim/tr-25-0070 |
|
History
Fri, 27 Jun 2025 09:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Vestel EVC04 Configuration Interface allows SQL Injection.This issue affects EVC04 Configuration Interface: through 18.03.2025. | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Vestel EVC04 Configuration Interface allows SQL Injection.This issue affects EVC04 Configuration Interface: before V3.187, V4.53. |
Mon, 02 Jun 2025 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Vestel
Vestel evc04 Configuration Interface |
|
| CPEs | cpe:2.3:a:vestel:evc04_configuration_interface:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Vestel
Vestel evc04 Configuration Interface |
Tue, 18 Mar 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 18 Mar 2025 14:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Vestel EVC04 Configuration Interface allows SQL Injection.This issue affects EVC04 Configuration Interface: through 18.03.2025. | |
| Title | SQLi in Vestel's EVC04 Configuration Interface | |
| Weaknesses | CWE-89 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: TR-CERT
Published: 2025-03-18T13:46:23.242Z
Updated: 2025-06-27T09:16:16.237Z
Reserved: 2024-09-19T10:58:49.660Z
Link: CVE-2024-8997
Updated: 2025-03-18T13:55:48.748Z
Status : Modified
Published: 2025-03-18T14:15:41.400
Modified: 2025-06-27T10:15:24.527
Link: CVE-2024-8997
No data.