CVE-2023-5046 is a critical SQL injection issue in Biltay Technology Procost affecting versions before 1390. The NVD record rates it 9.8 critical and indicates the issue can be reached remotely without authentication or user interaction, which makes exposed deployments especially high risk.
CVE-2023-5045 is a critical SQL injection issue in Biltay Kayisi affecting versions before 1286. The published description states that improper neutralization of SQL command special elements could allow SQL injection and may also lead to command line execution through SQL injection. NVD lists the issue as network-reachable, unauthenticated, and high impact across confidentiality, integrity, and availability.
CVE-2023-3046 is a critical SQL injection vulnerability in Biltay Technology Scienta. The affected range in the supplied record is Scienta versions before 20230630.1953. Because the NVD vector shows network exploitation with no privileges or user interaction required and high impact to confidentiality, integrity, and availability, this issue should be treated as urgent for any exposed deployment.