# CVE-2026-7188

## Summary

- **CVE ID:** CVE-2026-7188
- **Severity:** CRITICAL
- **CVSS Score:** 9.8 (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H)
- **CWE:** CWE-89
- **Published:** Sep 10, 2026
- **Last Modified:** Sep 10, 2026

## Description

Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Armiya Information Technologies Ltd. Co. Access Control System allows SQL Injection.

This issue affects Access Control System: before Versiyon 2.

## Affected Products

- Armiya Information Technologies Ltd. Co. — Access Control System (0)

## References

- [CNA](https://siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-26-1061)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.32%
- **EPSS Percentile:** 24.8

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-12._