CVE-2024-38793

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in PriceListo Best Restaurant Menu by PriceListo allows SQL Injection.This issue affects Best Restaurant Menu by PriceListo: from n/a through 1.4.1.
Configurations

Configuration 1 (hide)

cpe:2.3:a:pricelisto:great_restaurant_menu_wp:*:*:*:*:*:wordpress:*:*

History

13 Sep 2024, 20:57

Type Values Removed Values Added
References () https://patchstack.com/database/vulnerability/best-restaurant-menu-by-pricelisto/wordpress-best-restaurant-menu-by-pricelisto-plugin-1-4-1-sql-injection-vulnerability?_s_id=cve - () https://patchstack.com/database/vulnerability/best-restaurant-menu-by-pricelisto/wordpress-best-restaurant-menu-by-pricelisto-plugin-1-4-1-sql-injection-vulnerability?_s_id=cve - Third Party Advisory
First Time Pricelisto great Restaurant Menu Wp
Pricelisto
CPE cpe:2.3:a:pricelisto:great_restaurant_menu_wp:*:*:*:*:*:wordpress:*:*
Summary
  • (es) Vulnerabilidad de neutralización incorrecta de elementos especiales utilizados en un comando SQL ('Inyección SQL') en PriceListo Best Restaurant Menu by PriceListo permite la inyección SQL. Este problema afecta a Best Restaurant Menu by PriceListo: desde n/a hasta 1.4.1.
CVSS v2 : unknown
v3 : 8.5
v2 : unknown
v3 : 8.8

29 Aug 2024, 15:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-08-29 15:15

Updated : 2024-09-13 20:57


NVD link : CVE-2024-38793

Mitre link : CVE-2024-38793

CVE.ORG link : CVE-2024-38793


JSON object : View

Products Affected

pricelisto

  • great_restaurant_menu_wp
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')