SQL Injection Vulnerability in Eron Software Wowwo CRM
CVE-2024-12150
9.8CRITICAL
What is CVE-2024-12150?
The vulnerability in Eron Software's Wowwo CRM involves improper neutralization of special elements, leading to a potential blind SQL injection attack. This flaw allows attackers to manipulate SQL queries and potentially gain unauthorized access to sensitive data. The vendor has not disclosed the status of the remediation process, leaving users at risk if they do not take necessary precautions.
Affected Version(s)
Wowwo CRM 0