CVE Published: 18/09/2024 |
CVE Updated: 18/09/2024 |
CVE Year: 2024 Source: jpcert |
Vendor: Welcart Inc. |
Product: Welcart e-Commerce Status : PUBLISHED
CVE-2024-42404 Description
SQL injection vulnerability in Welcart e-Commerce prior to 2.11.2 allows an attacker who can login to the product to obtain or alter the information stored in the database.