CVE Published: 17/10/2024 |
CVE Updated: 17/10/2024 |
CVE Year: 2024 Source: Patchstack |
Vendor: anand23 |
Product: Ajax Rating with Custom Login Status : PUBLISHED
CVE-2024-49246 Description
Improper Neutralization of Special Elements used in an SQL Command (\'SQL Injection\') vulnerability in anand23 Ajax Rating with Custom Login allows SQL Injection.This issue affects Ajax Rating with Custom Login: from n/a through 1.1.
Metrics
CVSS Version: 3.1 |
Base Score: 9.3 CRITICAL Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:L