CVE-2024-38793

I

mproper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in PriceListo Best Restaurant Menu by PriceListo allows SQL Injection.This issue affects Best Restaurant Menu by PriceListo: from n/a through 1.4.1.

Configurations

Configuration 1 (hide)

cpe:2.3:a:pricelisto:great_restaurant_menu_wp:*:*:*:*:*:wordpress:*:*

History

13 Sep 2024, 20:57

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 8.5
v2 : unknown
v3 : 8.8
First Time Pricelisto great Restaurant Menu Wp
Pricelisto
Summary
  • (es) Vulnerabilidad de neutralización incorrecta de elementos especiales utilizados en un comando SQL ('Inyección SQL') en PriceListo Best Restaurant Menu by PriceListo permite la inyección SQL. Este problema afecta a Best Restaurant Menu by PriceListo: desde n/a hasta 1.4.1.
References () https://patchstack.com/database/vulnerability/best-restaurant-menu-by-pricelisto/wordpress-best-restaurant-menu-by-pricelisto-plugin-1-4-1-sql-injection-vulnerability?_s_id=cve - () https://patchstack.com/database/vulnerability/best-restaurant-menu-by-pricelisto/wordpress-best-restaurant-menu-by-pricelisto-plugin-1-4-1-sql-injection-vulnerability?_s_id=cve - Third Party Advisory
CPE cpe:2.3:a:pricelisto:great_restaurant_menu_wp:*:*:*:*:*:wordpress:*:*

29 Aug 2024, 15:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-08-29 15:15

Updated : 2024-09-13 20:57


NVD link : CVE-2024-38793

Mitre link : CVE-2024-38793

CVE.ORG link : CVE-2024-38793


JSON object : View

CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')