Vulnerabilities > Talentyazilim

DATE CVE VULNERABILITY TITLE RISK
2023-12-28 CVE-2023-4671 SQL Injection vulnerability in Talentyazilim Ecop 32255
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Talent Software ECOP allows Command Line Execution through SQL Injection.This issue affects ECOP: before 32255.
network
low complexity
talentyazilim CWE-89
critical
9.8
2023-12-28 CVE-2023-4672 Cross-site Scripting vulnerability in Talentyazilim Ecop 32255
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Talent Software ECOP allows Reflected XSS.This issue affects ECOP: before 32255.
network
low complexity
talentyazilim CWE-79
6.1
2023-03-15 CVE-2023-0322 Cross-site Scripting vulnerability in Talentyazilim Unis
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Talent Software UNIS allows Reflected XSS.This issue affects UNIS: before 28376.
network
low complexity
talentyazilim CWE-79
6.1