CVE-2023-2889: Veom Service Tracking

Critical severity, CVSS 9.8. EPSS: 0.7% chance of exploitation in the next 30 days.

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Veon Computer Service Tracking Software allows SQL Injection. This issue affects Service Tracking Software: before crm 2.0.

Affected products

  • Veom Service Tracking: up to and including 20231122

Published 2023-11-22. Last modified 2026-06-17.