Security Advisory

CVE-2024-13149

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2025-09-16 14:09:07
Last updated 2026-06-01 12:24:16
Assigner TR-CERT
CVSS score 9.8
State PUBLISHED

Description

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection'), CWE - 200 - Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Arma Store Armalife allows SQL Injection. This issue affects Armalife: through 20250916.  NOTE: The vendor did not inform about the completion of the fixing process within the specified time. The CVE will be updated when new information becomes available.