CVE-2019-25455Disclosure(web-ofisi / e-ticaret)

LOWCVSS 7.5 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

Web Ofisi E-Ticaret v3 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the 'a' parameter. Attackers can send GET requests to with malicious 'a' parameter values to extract sensitive database information.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-89

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

NONE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • e-ticaret

Threat summary

  • 3 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 3 signals
  • Disclosure: 2 classified signals
  • General: 1 classified signal
  • Peaked 2d ago at 1 mentions (2026-02-22); latest day: 1
  • 3 total mentions across 3 days

Affected systems

Vendors
Products
e-ticaret

1 version affected across 1 product

Deep dive

Activity timeline3 mentions / 3d
00111Mentions · 2026-02-22: 1Mentions · 2026-02-27: 1Mentions · 2026-03-23: 1Technical Details · 2026-02-22: 1Technical Details · 2026-02-27: 1Technical Details · 2026-03-23: 102-2202-2703-23
Signal classification2 categories
Disclosure
266.7%
General
133.3%
Referenced assets2 URLs
Classification over time
DateTotalLabels
2026-02-221
Disclosure1
2026-02-271
Disclosure1
2026-03-231
General1
Full discourse3 posts
  • David@DavidMarquet19
    General

    📌 Top CVEs recientes (CVSS>=7.0): 1. 💉 CVE-2019-25455 (CVSS: 7.5) 2. 💉 CVE-2019-25452 (CVSS: 7.5) 3. 💉 CVE-2019-25450 (CVSS: 7.5) 4. 💉 CVE-2019-25446 (CVSS: 8.2) 5. 💉 CVE-2019-25443 (CVSS: 8.2) #CyberSecurity #CVE #Infosec

    Post summary

    The post lists several recent high‑CVSS CVEs without any additional context on exploitation, patches, or PoCs, simply highlighting their severity ratings.

    0000015
    167 followersView on X
  • CRAC Learning - Tech@cracbot
    Disclosure

    CVE-2019-25455 (CVSS:8.8, HIGH) is Analyzed. Web Ofisi E-Ticaret v3 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate datab..https://nvd.nist.gov/vuln/detail/CVE-2019-25455 #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    Post summary

    The tweet announces that Web Ofisi E‑Ticaret v3 has a high‑severity SQL injection vulnerability (CVE‑2019‑25455) and directs readers to the NVD for details.

    0000012
    173 followersView on X
  • CVETodo@CveTodo
    Disclosure

    CVE-2019-25455 pertains to an **SQL Injection vulnerability** present in **Web Ofisi E-Ticaret v3**. SQL injection occurs when an application improperly sanitizes user input, allowing attackers to inject malicious SQL code into database queries. In this case, the vulnerability exists in the handling of the `a` parameter, which is passed via GET requests. #Cybersecurity #CVE #HighSeverity #SecurityAlert #RemoteCodeExecution #SQLInjection #PrivilegeEscalation https://cvetodo.com/cve/CVE-2019-25455

    Post summary

    The post announces a SQL injection vulnerability in Web Ofisi E‑Ticaret v3, detailing the affected parameter and request method, but does not provide PoC, exploit, patch, or evidence of active exploitation.

    0000030
    20 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appweb-ofisie-ticaret3.0.0--

Explore more