9.8
/ 10
CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Eksagate Electronic Engineering and Computer Industry Trade Inc. Webpack Management System allows SQL Injection.This issue affects Webpack Management System: through 20251119.
Basic Information
ID
CVE-2025-10437
Source
TR-CERT
Published
Nov 19, 2025 at 11:41
Modified
Nov 19, 2025 at 16:08
Affected Product
Vendor
Eksagate Electronic Engineering and Computer Industry Trade Inc.
Product
Webpack Management System
Affected Versions
Eksagate Electronic Engineering and Computer Industry Trade Inc. Webpack Management System 0