VYPR

Emlak V2

by Web Ofisi

CVEs (2)

  • CVE-2019-25459CriFeb 22, 2026
    risk 0.64cvss 9.8epss 0.00

    Web Ofisi Emlak V2 contains multiple SQL injection vulnerabilities in the endpoint that allow unauthenticated attackers to manipulate database queries through GET parameters. Attackers can inject SQL code into parameters like emlak_durumu, emlak_tipi, il, ilce, kelime, and semt…

  • CVE-2019-25456CriFeb 22, 2026
    risk 0.59cvss 9.1epss 0.00

    Web Ofisi Emlak v2 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the 'ara' GET parameter. Attackers can send requests to with time-based SQL injection payloads to extract sensitive…