{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-04-20T09:50:58.360","vulnerabilities":[{"cve":{"id":"CVE-2023-4231","sourceIdentifier":"iletisim@usom.gov.tr","published":"2023-09-15T08:15:07.867","lastModified":"2024-11-21T08:34:40.597","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Cevik Informatics Online Payment System allows SQL Injection.This issue affects Online Payment System: before 4.09.\n\n"},{"lang":"es","value":"La neutralización inadecuada de Elementos Especiales utilizados en una vulnerabilidad de comando SQL (\"Inyección SQL\") en el Online Payment System de Cevik Informatics permite la inyección de SQL. Este problema afecta al Online Payment System: antes de la versión 4.09."}],"metrics":{"cvssMetricV31":[{"source":"iletisim@usom.gov.tr","type":"Secondary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","baseScore":9.8,"baseSeverity":"CRITICAL","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH"},"exploitabilityScore":3.9,"impactScore":5.9}]},"weaknesses":[{"source":"iletisim@usom.gov.tr","type":"Secondary","description":[{"lang":"en","value":"CWE-89"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cevik:informatics_online_payment_system:*:*:*:*:*:*:*:*","versionEndExcluding":"4.09","matchCriteriaId":"F05F7343-C728-4D01-A343-A3DB74714563"}]}]}],"references":[{"url":"https://www.usom.gov.tr/bildirim/tr-23-0532","source":"iletisim@usom.gov.tr","tags":["Third Party Advisory"]},{"url":"https://www.usom.gov.tr/bildirim/tr-23-0532","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"]}]}}]}