Improper Control of Generation of Code ('Code Injection') vulnerability in Profelis Informatics SambaBox allows Code Injection.This issue affects SambaBox: before 5.1.
The product constructs all or part of a code segment using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the syntax or behavior of the intended code segment.
Link | Tags |
---|---|
https://www.usom.gov.tr/bildirim/tr-25-0101 | third party advisory |
https://sambabox.io/2025/04/14/version-5-1/ | product vendor advisory release notes |