CVE 8.8 HIGH

SQLi in GG Soft’s PaperWork_CVE-2025-10968

8.8 / 10
HIGH
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Description

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection'), CWE - 564 - SQL Injection: Hibernate vulnerability in GG Soft Software Services Inc. PaperWork allows Blind SQL Injection, SQL Injection.This issue affects PaperWork: from 6.1.0.9390 before 6.1.0.9398.

AI Analysis

SQL Injection vulnerability in GG Soft Software Services Inc. PaperWork allowing Blind SQL Injection

Basic Information

ID CVE-2025-10968
Source TR-CERT
Published Nov 7, 2025 at 13:08
Modified Nov 7, 2025 at 13:22

Affected Product

Vendor GG Soft Software Services Inc.
Product PaperWork
Version 6.1.0.9390
Affected Versions GG Soft Software Services Inc. PaperWork 6.1.0.9390

CWE Classification

AI Assessment

AI Score 8.8 / 10
AI Severity High
Vendor GG Soft Software Services Inc.
Product PaperWork
Version 6.1.0.9390

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.