Yordam
Yordam Library Automation System: vulnerabilidades y CVE
Yordam Library Automation System tiene 10 vulnerabilidades publicadas, 3 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE10
Últimos 12 meses3
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2025-15024 | Alta (8.8) | 0.25% | — | 14 may 2026 | Improper Control of Generation of Code ('Code Injection') vulnerability in Yordam Information Technology Consulting, Training and Electronic Systems Industry and Trade Inc. Library Automation System allows Remote Code… |
| CVE-2025-15023 | Alta (8.8) | 0.22% | — | 14 may 2026 | Incorrect Authorization vulnerability in Yordam Information Technology Consulting, Training and Electronic Systems Industry and Trade Inc. Library Automation System allows Exploiting Incorrectly Configured Access… |
| CVE-2025-15025 | Alta (8.8) | 0.30% | — | 14 may 2026 | Authorization bypass through User-Controlled key vulnerability in Yordam Information Technology Consulting, Training and Electronic Systems Industry and Trade Inc. Library Automation System allows Exploitation of… |
| CVE-2025-1301 | Media (6.1) | 0.24% | — | 2 may 2025 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Yordam Informatics Library Automation System allows Reflected XSS. This issue affects Library Automation… |
| CVE-2021-45479 | Media (5.4) | 0.36% | — | 2 mar 2023 | Improper Neutralization of Input During Web Page Generation vulnerability in Yordam Information Technologies Library Automation System allows Stored XSS. This issue affects Library Automation System: before 19.2. |
| CVE-2021-45478 | Media (6.5) | 0.59% | — | 2 mar 2023 | Improper Handling of Parameters vulnerability in Bordam Information Technologies Library Automation System allows Collect Data as Provided by Users. This issue affects Library Automation System: before 19.2. |
| CVE-2021-45477 | Media (6.5) | 0.59% | — | 2 mar 2023 | Improper Handling of Parameters vulnerability in Bordam Information Technologies Library Automation System allows Collect Data as Provided by Users. This issue affects Library Automation System: before 19.2. |
| CVE-2021-45476 | Media (6.1) | 0.39% | — | 27 oct 2022 | Yordam Library Information Document Automation product before version 19.02 has an unauthenticated reflected XSS vulnerability. |
| CVE-2021-45475 | Alta (7.5) | 0.55% | — | 27 oct 2022 | Yordam Library Information Document Automation product before version 19.02 has an unauthenticated Information disclosure vulnerability. |
| CVE-2022-2266 | Media (6.1) | 0.44% | — | 22 sept 2022 | University Library Automation System developed by Yordam Bilgi Teknolojileri before version 19.2 has an unauthenticated Reflected XSS vulnerability. This has been fixed in the version 19.2 |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.