Jettweb PHP Hazir Haber Sitesi Scripti V3 contains an SQL injection vulnerability that allows attackers to inject malicious SQL commands through the kelime parameter in POST requests. Attackers can manipulate the kelime parameter with UNION-based SQL injection payloads to extract sensitive database information or modify database contents.
Metrics
Affected Vendors & Products
References
History
Thu, 12 Mar 2026 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 12 Mar 2026 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Jettweb PHP Hazir Haber Sitesi Scripti V3 contains an SQL injection vulnerability that allows attackers to inject malicious SQL commands through the kelime parameter in POST requests. Attackers can manipulate the kelime parameter with UNION-based SQL injection payloads to extract sensitive database information or modify database contents. | |
| Title | Jettweb PHP Hazir Haber Sitesi Scripti V3 SQL Injection | |
| Weaknesses | CWE-89 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-03-12T16:30:38.755Z
Reserved: 2026-03-12T13:48:16.947Z
Link: CVE-2019-25512
Updated: 2026-03-12T16:30:32.989Z
Status : Received
Published: 2026-03-12T16:16:03.517
Modified: 2026-03-12T16:16:03.517
Link: CVE-2019-25512
No data.
OpenCVE Enrichment
No data.