Web Ofisi Emlak v2 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the 'ara' GET parameter. Attackers can send requests to with time-based SQL injection payloads to extract sensitive database information or cause denial of service.
Metrics
Affected Vendors & Products
References
History
Sun, 22 Feb 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Web Ofisi Emlak v2 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the 'ara' GET parameter. Attackers can send requests to with time-based SQL injection payloads to extract sensitive database information or cause denial of service. | |
| Title | Web Ofisi Emlak v2 SQL Injection via ara Parameter | |
| Weaknesses | CWE-89 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-02-22T14:12:10.439Z
Reserved: 2026-02-22T13:57:34.791Z
Link: CVE-2019-25456
No data.
Status : Received
Published: 2026-02-22T15:16:15.187
Modified: 2026-02-22T15:16:15.187
Link: CVE-2019-25456
No data.
OpenCVE Enrichment
No data.