CVE Published: 29/08/2024 |
CVE Updated: 29/08/2024 |
CVE Year: 2024 Source: Patchstack |
Vendor: Roundup WP |
Product: Registrations for the Events Calendar Status : PUBLISHED
CVE-2024-39638 Description
Improper Neutralization of Special Elements used in an SQL Command (\'SQL Injection\') vulnerability in Roundup WP Registrations for the Events Calendar allows SQL Injection.This issue affects Registrations for the Events Calendar: from n/a through 2.12.2.
Metrics
CVSS Version: 3.1 |
Base Score: 8.5 HIGH Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:L