CVE-2023-35068: Bma Personnel Tracking System

Critical severity, CVSS 9.8. EPSS: 0.6% chance of exploitation in the next 30 days.

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in BMA Personnel Tracking System allows SQL Injection. This issue affects Personnel Tracking System: before 20230904.

Affected products

  • Bma Personnel Tracking System: before 20230904 (fixed in 20230904)

Published 2023-09-05. Last modified 2026-06-17.