PEEL Shopping CMS 9.4.0 is vulnerable to authenticated SQL injection in utilisateurs.php. A user that belongs to the administrator group can inject a malicious SQL query in order to affect the execution logic of the application and retrive information from the database.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2022-06-15T15:13:44

Updated: 2024-08-04T03:15:29.266Z

Reserved: 2021-09-27T00:00:00

Link: CVE-2021-41672

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2022-06-15T16:15:08.407

Modified: 2022-06-23T16:43:10.477

Link: CVE-2021-41672

cve-icon Redhat

No data.