ID |
CVE-2024-49244
|
Sažetak |
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in cmssoft CSV Product Import Export for WooCommerce allows SQL Injection.This issue affects CSV Product Import Export for WooCommerce: from n/a through 1.0.0. |
Reference |
|
CVSS |
Base: | 8.5 |
Impact: | 4.7 |
Exploitability: | 3.1 |
|
Pristup |
Vektor | Složenost | Autentikacija |
NETWORK |
LOW |
LOW |
|
Impact |
Povjerljivost | Cjelovitost | Dostupnost |
HIGH |
NONE |
LOW |
|
CVSS vektor |
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:L |
Zadnje važnije ažuriranje |
18-10-2024 - 12:52 |
Objavljeno |
17-10-2024 - 18:15 |