Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
9.8
CVE-2026-8307: Mediküm Web: Unsecured SQL Commands Allow Unauthorized Access
CVE-2026-8307
CVE-2026-8307
Summary
Mediküm Web, a software used by Webbeyaz Web Design, has a security flaw that allows hackers to manipulate database commands. This could allow unauthorized access to sensitive information. Since the software is no longer supported, it's essential to consider replacing it with a more secure alternative.
What to do
No fix is available yet. Check with your software vendor for updates.
Affected software
| Vendor | Product | Affected versions |
|---|---|---|
| webbeyaz web design | mediküm web | <= 08072026 |
Original title
Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Webbeyaz Web Design Mediküm Web allows SQL Injection.
This issue affects Mediküm Web: through ...
Original description
Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Webbeyaz Web Design Mediküm Web allows SQL Injection.
This issue affects Mediküm Web: through 08072026. NOTE: The vendor was contacted and it was learned that the product is not supported.
This issue affects Mediküm Web: through 08072026. NOTE: The vendor was contacted and it was learned that the product is not supported.
mitre CVSS3.1
9.8
Vulnerability type
CWE-89
SQL Injection
- https://siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-26-0518 government-resource
Published: 8 Jul 2026 · Updated: 23 Jul 2026 · First seen: 8 Jul 2026