CVE-2024-42404

SQL injection vulnerability in Welcart e-Commerce prior to 2.11.2 allows an attacker who can login to the product to obtain or alter the information stored in the database.
Configurations

No configuration.

History

No history.

Information

Published : 2024-09-18 06:15

Updated : 2024-09-20 12:30


NVD link : CVE-2024-42404

Mitre link : CVE-2024-42404

CVE.ORG link : CVE-2024-42404


JSON object : View

Products Affected

No product.

CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')