CVE-2025-47643 - CERT CVE
ID CVE-2025-47643
Sažetak Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in ELEXtensions ELEX Product Feed for WooCommerce allows SQL Injection. This issue affects ELEX Product Feed for WooCommerce: from n/a through 3.1.2.
Reference
CVSS
Base: 7.6
Impact: 4.7
Exploitability:2.3
Pristup
VektorSloženostAutentikacija
NETWORK LOW HIGH
Impact
PovjerljivostCjelovitostDostupnost
HIGH NONE LOW
CVSS vektor CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:L
Zadnje važnije ažuriranje 08-05-2025 - 14:39
Objavljeno 07-05-2025 - 15:16