CVE Published: 20/10/2024 |
CVE Updated: 21/10/2024 |
CVE Year: 2024 Source: Patchstack |
Vendor: Acespritech Solutions Pvt. Ltd. |
Product: Social Link Groups Status : PUBLISHED
CVE-2024-49619 Description
Improper Neutralization of Special Elements used in an SQL Command (\'SQL Injection\') vulnerability in Acespritech Solutions Pvt. Ltd. Social Link Groups allows Blind SQL Injection.This issue affects Social Link Groups: from n/a through 1.1.0.
Metrics
CVSS Version: 3.1 |
Base Score: 8.5 HIGH Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:L
CWE-ID: CWE-89 CWE Name: CWE-89 Improper Neutralization of Special Elements used in an SQL Command (
SQL Injection
) Source: Acespritech Solutions Pvt. Ltd.
Common Attack Pattern Enumeration and Classification (CAPEC)