Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Tumeva Internet Technologies Software Information Advertising and Consulting Services Trade Ltd. Co. Tumeva News Software allows SQL Injection.This issue affects Tumeva News Software: through 17022026. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
History

Tue, 17 Feb 2026 12:00:00 +0000

Type Values Removed Values Added
Description Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Tumeva Internet Technologies Software Information Advertising and Consulting Services Trade Ltd. Co. Tumeva News Software allows SQL Injection.This issue affects Tumeva News Software: through 17022026. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
Title Time-Based Blind SQLi in Tumeva Internet Technologies' Tumeva News Software
Weaknesses CWE-89
References
Metrics cvssV3_1

{'score': 8.6, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: TR-CERT

Published:

Updated: 2026-02-17T11:36:50.587Z

Reserved: 2025-07-14T09:03:32.705Z

Link: CVE-2025-7631

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-02-17T12:16:15.090

Modified: 2026-02-17T12:16:15.090

Link: CVE-2025-7631

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.