SQL Injection Vulnerability in Niushop B2B2C Allows Escalation of Privileges
CVE-2024-28560

Currently unrated

Key Information:

Vendor

Niushop

Vendor
CVE Published:
22 March 2024

What is CVE-2024-28560?

SQL injection vulnerability in Niushop B2B2C v.5.3.3 and before allows an attacker to escalate privileges via the deleteArea() function of the Address.php component.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.