Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Roundup WP Registrations for the Events Calendar allows SQL Injection.This issue affects Registrations for the Events Calendar: from n/a through 2.12.2.
References
Configurations
History
13 Sep 2024, 21:00
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:roundupwp:registrations_for_the_events_calendar:*:*:*:*:*:*:*:* | |
First Time |
Roundupwp
Roundupwp registrations For The Events Calendar |
|
References | () https://patchstack.com/database/vulnerability/registrations-for-the-events-calendar/wordpress-registrations-for-the-events-calendar-plugin-2-12-2-sql-injection-vulnerability?_s_id=cve - Third Party Advisory | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 8.8 |
30 Aug 2024, 13:00
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
29 Aug 2024, 15:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-08-29 15:15
Updated : 2024-09-13 21:00
NVD link : CVE-2024-39638
Mitre link : CVE-2024-39638
CVE.ORG link : CVE-2024-39638
JSON object : View
Products Affected
roundupwp
- registrations_for_the_events_calendar
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')