Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in PriceListo Best Restaurant Menu by PriceListo allows SQL Injection.This issue affects Best Restaurant Menu by PriceListo: from n/a through 1.4.1.
History

Fri, 13 Sep 2024 21:15:00 +0000

Type Values Removed Values Added
First Time appeared Pricelisto
Pricelisto great Restaurant Menu Wp
CPEs cpe:2.3:a:pricelisto:great_restaurant_menu_wp:*:*:*:*:*:wordpress:*:*
Vendors & Products Pricelisto
Pricelisto great Restaurant Menu Wp

Thu, 29 Aug 2024 20:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 29 Aug 2024 14:30:00 +0000

Type Values Removed Values Added
Description Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in PriceListo Best Restaurant Menu by PriceListo allows SQL Injection.This issue affects Best Restaurant Menu by PriceListo: from n/a through 1.4.1.
Title WordPress Best Restaurant Menu by Pricelisto plugin <= 1.4.1 - SQL Injection vulnerability
Weaknesses CWE-89
References
Metrics cvssV3_1

{'score': 8.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:L'}


cve-icon MITRE

Status: PUBLISHED

Assigner: Patchstack

Published: 2024-08-29T14:07:29.803Z

Updated: 2024-08-29T14:31:01.988Z

Reserved: 2024-06-19T15:08:12.137Z

Link: CVE-2024-38793

cve-icon Vulnrichment

Updated: 2024-08-29T14:30:58.907Z

cve-icon NVD

Status : Analyzed

Published: 2024-08-29T15:15:26.260

Modified: 2024-09-13T20:57:16.150

Link: CVE-2024-38793

cve-icon Redhat

No data.