Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Ncvav Virtual PBX Software allows SQL Injection. This issue affects Virtual PBX Software: before 09.07.2025.CreditsHasan Yasin YasarYusuf Melih DaskiranReferenceshttps://www.usom.gov.tr/bildirim/tr-25-0180https://siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-25-0180