CVE-2024-32602

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in OnTheGoSystems WooCommerce Multilingual & Multicurrency.This issue affects WooCommerce Multilingual & Multicurrency: from n/a through 5.3.3.1.
Configurations

Configuration 1 (hide)

cpe:2.3:a:onthegosystems:woocommerce_multilingual_\&_multicurrency:*:*:*:*:*:wordpress:*:*

History

19 Mar 2025, 18:05

Type Values Removed Values Added
First Time Onthegosystems woocommerce Multilingual \& Multicurrency
Onthegosystems
References () https://patchstack.com/database/vulnerability/woocommerce-multilingual/wordpress-woocommerce-multilingual-multicurrency-plugin-5-3-3-1-sql-injection-vulnerability?_s_id=cve - () https://patchstack.com/database/vulnerability/woocommerce-multilingual/wordpress-woocommerce-multilingual-multicurrency-plugin-5-3-3-1-sql-injection-vulnerability?_s_id=cve - Third Party Advisory
CPE cpe:2.3:a:onthegosystems:woocommerce_multilingual_\&_multicurrency:*:*:*:*:*:wordpress:*:*

21 Nov 2024, 09:15

Type Values Removed Values Added
Summary
  • (es) Neutralización inadecuada de elementos especiales utilizados en una vulnerabilidad de comando SQL ("Inyección SQL") en OnTheGoSystems WooCommerce Multilingual & Multicurrency. Este problema afecta a WooCommerce Multilingual & Multicurrency: desde n/a hasta 5.3.3.1.
References () https://patchstack.com/database/vulnerability/woocommerce-multilingual/wordpress-woocommerce-multilingual-multicurrency-plugin-5-3-3-1-sql-injection-vulnerability?_s_id=cve - () https://patchstack.com/database/vulnerability/woocommerce-multilingual/wordpress-woocommerce-multilingual-multicurrency-plugin-5-3-3-1-sql-injection-vulnerability?_s_id=cve -

18 Apr 2024, 11:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-04-18 11:15

Updated : 2025-03-19 18:05


NVD link : CVE-2024-32602

Mitre link : CVE-2024-32602

CVE.ORG link : CVE-2024-32602


JSON object : View

Products Affected

onthegosystems

  • woocommerce_multilingual_\&_multicurrency
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')