Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
SQL Injection Vulnerability in Talya Informatics' Travel APPS
Vulnerability Description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Talya Informatics Travel APPS allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Travel APPS: before v17.0.68.
CVSS Information
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Vulnerability Type
SQL命令中使用的特殊元素转义处理不恰当(SQL注入)
Vulnerability Title
Talya Informatics Travel APPS 访问控制错误漏洞
Vulnerability Description
Talya Informatics Travel APPS是土耳其Talya Informatics公司的一个旅游软件。 Talya Informatics Travel APPS v17.0.68之前版本存在访问控制错误漏洞,该漏洞源于允许攻击者利用错误配置的访问控制绕过验证。
CVSS Information
N/A
Vulnerability Type
N/A