Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Eskom Water Metering Software allows Command Line Execution through SQL Injection.
This issue affects Water Metering Software: before 23.04.06.
References
| Link | Resource |
|---|---|
| https://siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-23-0225 | |
| https://www.usom.gov.tr/bildirim/tr-23-0225 | Third Party Advisory |
| https://www.usom.gov.tr/bildirim/tr-23-0225 | Third Party Advisory |
Configurations
History
22 May 2026, 12:16
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
|
| Summary | (en) Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Eskom Water Metering Software allows Command Line Execution through SQL Injection. This issue affects Water Metering Software: before 23.04.06. |
21 Nov 2024, 07:40
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://www.usom.gov.tr/bildirim/tr-23-0225 - Third Party Advisory |
06 Sep 2023, 15:15
| Type | Values Removed | Values Added |
|---|---|---|
| Summary | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Eskom Water Metering Software allows Command Line Execution through SQL Injection.This issue affects Water Metering Software: before 23.04.06. |
21 Apr 2023, 03:46
| Type | Values Removed | Values Added |
|---|---|---|
| References | (MISC) https://www.usom.gov.tr/bildirim/tr-23-0225 - Third Party Advisory | |
| First Time |
Eskom
Eskom el Terminali \(su Okuma\) Uygulamalarimiz |
|
| CPE | cpe:2.3:a:eskom:el_terminali_\(su_okuma\)_uygulamalarimiz:*:*:*:*:*:*:*:* |
14 Apr 2023, 09:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2023-04-14 09:15
Updated : 2026-06-17 05:28
NVD link : CVE-2023-1863
Mitre link : CVE-2023-1863
CVE.ORG link : CVE-2023-1863
JSON object : View
Products Affected
eskom
- el_terminali_\(su_okuma\)_uygulamalarimiz
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
