CVE Details
Basic Information
| Title | SQLi in Bayraktar Solar Energies’ ScadaWatt Otopilot |
|---|---|
| Type | cve |
| Published | 2025-07-24T12:56:42.961Z |
| Modified | 2025-07-24T13:35:56.639Z |
Product Information
| Vendor | Bayraktar Solar Energies |
|---|---|
| Product | ScadaWatt Otopilot |
| Version | 0 |
CVSS Information
| Base Score | 9.8 (CRITICAL) |
|---|---|
| Attack Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
AI Analysis
| AI Description | A critical SQL Injection vulnerability exists in Bayraktar Solar Energies’ ScadaWatt Otopilot, affecting versions before 27.05.2025. This vulnerability allows attackers to inject malicious SQL code, potentially leading to unauthorized access and data manipulation. |
|---|---|
| AI Severity | Critical |
| AI Vendor | Bayraktar Solar Energies |
| AI Product | ScadaWatt Otopilot |
| AI Version | before 27.05.2025 |
Affected Products
- Bayraktar Solar Energies ScadaWatt Otopilot 0
Additional Information
| CWE List | CWE-89 |
|---|---|
| Source | TR-CERT |
Description
Improper Neutralization of Special Elements used in an SQL Command (‘SQL Injection’) vulnerability in Bayraktar Solar Energies ScadaWatt Otopilot allows SQL Injection.This issue affects ScadaWatt Otopilot: before 27.05.2025.