CVE Published: 24/10/2024 |
CVE Updated: 24/10/2024 |
CVE Year: 2024 Source: Patchstack |
Vendor: SWIT |
Product: WP Sessions Time Monitoring Full Automatic Status : PUBLISHED
CVE-2024-49681 Description
Improper Neutralization of Special Elements used in an SQL Command (\'SQL Injection\') vulnerability in SWIT WP Sessions Time Monitoring Full Automatic allows SQL Injection.This issue affects WP Sessions Time Monitoring Full Automatic: from n/a through 1.0.9.
Metrics
CVSS Version: 3.1 |
Base Score: 9.3 CRITICAL Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:L