Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Xpoda Türkiye Information Technology Inc. Xpoda Studio allows SQL Injection.This issue affects Xpoda Studio: through 09022026. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://www.usom.gov.tr/bildirim/tr-26-0020 |
|
History
Mon, 09 Feb 2026 11:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Xpoda Türkiye Information Technology Inc. Xpoda Studio allows SQL Injection.This issue affects Xpoda Studio: through 09022026. NOTE: The vendor was contacted early about this disclosure but did not respond in any way. | |
| Title | SQLi in Xpoda Türkiye Information Technology's Xpoda Studio | |
| Weaknesses | CWE-89 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: TR-CERT
Published:
Updated: 2026-02-09T13:34:56.748Z
Reserved: 2025-06-27T17:22:02.363Z
Link: CVE-2025-6830
No data.
Status : Received
Published: 2026-02-09T12:15:57.280
Modified: 2026-02-09T12:15:57.280
Link: CVE-2025-6830
No data.
OpenCVE Enrichment
No data.
Weaknesses