ThinkSAAS v3.7.0 was discovered to contain a SQL injection vulnerability via the name parameter at \system\action\update.php.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Mon, 28 Apr 2025 15:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:thinksaas:thinksaas:3.70:*:*:*:*:*:*:* |
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-02T04:33:11.578Z
Reserved: 2024-07-05T00:00:00
Link: CVE-2024-40456
Updated: 2024-07-17T19:34:20.955Z
Status : Analyzed
Published: 2024-07-16T20:15:03.687
Modified: 2025-04-28T14:43:04.063
Link: CVE-2024-40456
No data.
OpenCVE Enrichment
No data.
Weaknesses