Vulnerabilities > Veribase

DATE CVE VULNERABILITY TITLE RISK
2024-08-12 CVE-2024-6917 OS Command Injection vulnerability in Veribase Order Management
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in Veribilim Software Veribase Order Management allows OS Command Injection.This issue affects Veribase Order Management: before v4.010.2.
network
low complexity
veribase CWE-78
critical
9.8
2023-11-23 CVE-2023-3377 SQL Injection vulnerability in Veribase
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Veribilim Software Computer Veribase allows SQL Injection.This issue affects Veribase: through 20231123.  NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
network
low complexity
veribase CWE-89
critical
9.8