CVE 8.6 HIGH

Time-Based Blind SQLi in Tumeva Internet Technologies’ Tumeva News Software_CVE-2025-7631

8.6 / 10
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H

Description

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Tumeva Internet Technologies Software Information Advertising and Consulting Services Trade Ltd. Co. Tumeva News Software allows SQL Injection.This issue affects Tumeva News Software: through 17022026.Β NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

AI Analysis

SQL Injection vulnerability in Tumeva News Software through version 17022026

Basic Information

ID CVE-2025-7631
Source TR-CERT
Published Feb 17, 2026 at 11:36

Affected Product

Vendor Tumeva Internet Technologies Software Information Advertising and Consulting Services Trade Ltd. Co.
Product Tumeva News Software
Affected Versions Tumeva Internet Technologies Software Information Advertising and Consulting Services Trade Ltd. Co. Tumeva News Software 0

CWE Classification

AI Assessment

AI Score 8.6 / 10
AI Severity High
Vendor Tumeva Internet Technologies
Product Tumeva News Software
Version through 17022026

References

πŸ’­ Join the Security Discussion

πŸ”’ Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.