CVE-2022-4422

Call Center System developed by Bulutses Information Technologies before version 3.0 has an unauthenticated Sql Injection vulnerability. This has been fixed in the version 3.0
References
Link Resource
https://www.usom.gov.tr/bildirim/tr-22-0747 Third Party Advisory
https://www.usom.gov.tr/bildirim/tr-22-0747 Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:bulutses:bulutdesk_callcenter:*:*:*:*:*:*:*:*

History

21 Nov 2024, 07:35

Type Values Removed Values Added
References () https://www.usom.gov.tr/bildirim/tr-22-0747 - Third Party Advisory () https://www.usom.gov.tr/bildirim/tr-22-0747 - Third Party Advisory
Summary
  • (es) Call Center System, desarrollado por Bulutses Information Technologies, en sus versiones anteriores a la 3.0 tiene una vulnerabilidad de inyección Sql no autenticada. Esto se ha solucionado en la versión 3.0.

16 Apr 2023, 09:15

Type Values Removed Values Added
Summary Call Center System developed by Bulutses Information Technologies before version 3.0 has an unauthenticated Sql Injection vulnerability. This has been fixed in the version 3.0 Call Center System developed by Bulutses Information Technologies before version 3.0 has an unauthenticated Sql Injection vulnerability. This has been fixed in the version 3.0

08 Mar 2023, 14:15

Type Values Removed Values Added
Summary This issue affects: Bulutses Bilgi Teknolojileri LTD. ?T?. BULUTDESK CALLCENTER versions prior to 3.0. Call Center System developed by Bulutses Information Technologies before version 3.0 has an unauthenticated Sql Injection vulnerability. This has been fixed in the version 3.0

21 Feb 2023, 16:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-01-10 14:15

Updated : 2024-11-21 07:35


NVD link : CVE-2022-4422

Mitre link : CVE-2022-4422

CVE.ORG link : CVE-2022-4422


JSON object : View

Products Affected

bulutses

  • bulutdesk_callcenter
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')