CVE-2023-3377

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Veribilim Software Computer Veribase allows SQL Injection. This issue affects Veribase: through 20231123.  NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
Configurations

Configuration 1 (hide)

cpe:2.3:a:veribase:veribase:*:*:*:*:*:*:*:*

History

22 May 2026, 09:16

Type Values Removed Values Added
References
  • () https://siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-23-0655 -
  • () https://www.usom.gov.tr/bildirim/tr-23-0655 -
Summary (en) Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Veribilim Software Computer Veribase allows SQL Injection.This issue affects Veribase: through 20231123.  NOTE: The vendor was contacted early about this disclosure but did not respond in any way. (en) Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Veribilim Software Computer Veribase allows SQL Injection. This issue affects Veribase: through 20231123.  NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

21 Nov 2024, 08:17

Type Values Removed Values Added
References () https://https://www.usom.gov.tr/bildirim/tr-23-0655 - Broken Link () https://https://www.usom.gov.tr/bildirim/tr-23-0655 - Broken Link

30 Nov 2023, 16:06

Type Values Removed Values Added
CPE cpe:2.3:a:veribase:veribase:*:*:*:*:*:*:*:*
First Time Veribase
Veribase veribase
References () https://https://www.usom.gov.tr/bildirim/tr-23-0655 - () https://https://www.usom.gov.tr/bildirim/tr-23-0655 - Broken Link

23 Nov 2023, 09:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-11-23 09:15

Updated : 2026-05-22 09:16


NVD link : CVE-2023-3377

Mitre link : CVE-2023-3377

CVE.ORG link : CVE-2023-3377


JSON object : View

Products Affected

veribase

  • veribase
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')