Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection'), CWE - 200 - Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Arma Store Armalife allows SQL Injection. This issue affects Armalife: through 20250916. NOTE: The vendor did not inform about the completion of the fixing process within the specified time. The CVE will be updated when new information becomes available.
https://www.usom.gov.tr/bildirim/tr-25-0258
https://siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-25-0258