PT-2025-54253 · Unknown · Nlb Mklik Makedonija

·

CVE-2023-54163

·

Published

2025-12-30

·

Updated

2026-01-02

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions NLB mKlik Macedonia version 3.3.12
Description The software contains a SQL injection issue in the international transfer parameters. This allows attackers to manipulate database queries by injecting arbitrary SQL code through unsanitized input. Successful exploitation could lead to the disclosure of sensitive information from the mobile banking application. The vulnerable parameters are used during international transfers.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

SQL injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2023-54163

Affected Products

Nlb Mklik Makedonija