Vulnerabilities > Softomi

DATE CVE VULNERABILITY TITLE RISK
2023-12-21 CVE-2023-6122 Cross-site Scripting vulnerability in Softomi Advanced C2C Marketplace Software
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Istanbul Soft Informatics and Consultancy Limited Company Softomi Gelismis C2C Pazaryeri Yazilimi allows Reflected XSS.This issue affects Softomi Gelismis C2C Pazaryeri Yazilimi: before 12122023.
network
low complexity
softomi CWE-79
6.1
2023-12-21 CVE-2023-6145 SQL Injection vulnerability in Softomi Advanced C2C Marketplace Software
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Istanbul Soft Informatics and Consultancy Limited Company Softomi Advanced C2C Marketplace Software allows SQL Injection.This issue affects Softomi Advanced C2C Marketplace Software: before 12122023.
network
low complexity
softomi CWE-89
critical
9.8