PT-2025-6533 · Bss · Bss Software Mobuy Online Machinery Monitoring Panel

Yunus Ornek

·

Published

2025-02-14

·

Updated

2025-10-14

·

CVE-2024-13152

CVSS v3.1

10

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions BSS Software Mobuy Online Machinery Monitoring Panel versions prior to 2.0
Description The issue affects BSS Software Mobuy Online Machinery Monitoring Panel, allowing SQL Injection due to an Authorization Bypass Through User-Controlled SQL Primary Key vulnerability. This enables unauthorized access to sensitive data.
Recommendations For versions prior to 2.0, update to version 2.0 to resolve the issue. As a temporary workaround, consider restricting access to sensitive data and SQL endpoints to minimize the risk of exploitation.

Fix

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2024-13152

Affected Products

Bss Software Mobuy Online Machinery Monitoring Panel