PT-2026-7840 · Farktor · Farktor Software E-Commerce Package

Berat Arslan

·

Published

2026-02-12

·

Updated

2026-02-13

·

CVE-2025-10969

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Farktor Software E-Commerce Package versions through 27112025
Description The software contains an improper neutralization of special elements used in an SQL command, leading to a Blind SQL Injection issue. This allows for potential unauthorized access to or modification of data within the database.
Recommendations Versions prior to 27112025 should be updated.

Fix

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2025-10969

Affected Products

Farktor Software E-Commerce Package