SQL injection vulnerability in Music Store - WordPress eCommerce versions prior to 1.1.14 allows a remote authenticated attacker with an administrative privilege to execute arbitrary SQL commands. Information stored in the database may be obtained or altered by the attacker.
References
Configurations
History
No history.
Information
Published : 2024-06-07 04:15
Updated : 2024-11-21 09:21
NVD link : CVE-2024-36082
Mitre link : CVE-2024-36082
CVE.ORG link : CVE-2024-36082
JSON object : View
Products Affected
codepeople
- music_store
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')