CNNVD-202509-2490 Information

CNNVD ID

CNNVD-202509-2490

CVE-2024-13149

  • CNNVD Published: 2025-09-16

Description (Chinese)

Armalife是土耳其Armalife公司的一个在线时尚零售软件。 Armalife 20250916及之前版本存在SQL注入漏洞,该漏洞源于SQL命令中特殊元素中和不当,可能导致SQL注入和敏感信息泄露。

Description (English)

Armalife is an online fashion retail software for Armalife in Turkey. Armalife 20250916 and previous versions had an injection loophole in SQL, which stemmed from the misalignment of special elements in SQL orders, which could lead to SQL injections and sensitive information leaks.

Hazard Level

Low

Vulnerability Type

SQL注入

Affected Vendor

Armalife

Published

2025-09-16

Last Modified

2026-02-24

References

https://www.usom.gov.tr/bildirim/tr-25-0258

Patch

https://www.armalife.com.tr/

Share on: