Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Cevik Informatics Online Payment System allows SQL Injection. This issue affects Online Payment System: before 4.09.
https://www.usom.gov.tr/bildirim/tr-23-0532
https://siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-23-0532