Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Membership Software WishList Member X.This issue affects WishList Member X: from n/a before 3.26.7.
                
            References
                    Configurations
                    History
                    21 Nov 2024, 09:23
| Type | Values Removed | Values Added | 
|---|---|---|
| CVSS | 
        v2 :  v3 :  | 
    
        v2 : unknown
         v3 : 10.0  | 
| References | () https://patchstack.com/database/vulnerability/wishlist-member-x/wordpress-wishlist-member-x-plugin-3-25-1-unauthenticated-arbitrary-sql-query-execution-vulnerability?_s_id=cve - Third Party Advisory | 
02 Aug 2024, 20:56
| Type | Values Removed | Values Added | 
|---|---|---|
| CPE | cpe:2.3:a:wishlist_member:wishlist_member:*:*:*:*:*:*:*:* | |
| CVSS | 
        v2 :  v3 :  | 
    
        v2 : unknown
         v3 : 9.8  | 
| References | () https://patchstack.com/database/vulnerability/wishlist-member-x/wordpress-wishlist-member-x-plugin-3-25-1-unauthenticated-arbitrary-sql-query-execution-vulnerability?_s_id=cve - Third Party Advisory | |
| First Time | 
        
        Wishlist Member
         Wishlist Member wishlist Member  | 
09 Jul 2024, 18:19
| Type | Values Removed | Values Added | 
|---|---|---|
| Summary | 
        
        
  | 
09 Jul 2024, 09:15
| Type | Values Removed | Values Added | 
|---|---|---|
| New CVE | 
Information
                Published : 2024-07-09 09:15
Updated : 2024-11-21 09:23
NVD link : CVE-2024-37112
Mitre link : CVE-2024-37112
CVE.ORG link : CVE-2024-37112
JSON object : View
Products Affected
                wishlist_member
- wishlist_member
 
CWE
                
                    
                        
                        CWE-89
                        
            Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
