SQL Injection Vulnerability in Niushop B2B2C Allows Escalation of Privileges
CVE-2024-28559

Currently unrated

Key Information:

Vendor

Niushop

Vendor
CVE Published:
22 March 2024

What is CVE-2024-28559?

SQL injection vulnerability in Niushop B2B2C v.5.3.3 and before allows an attacker to escalate privileges via the setPrice() function of the Goodsbatchset.php component.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.