Zoho Campaigns SQL Injection Vulnerability
CVE-2024-30239
8.5HIGH
What is CVE-2024-30239?
A vulnerability has been identified in Zoho Campaigns due to improper neutralization of special elements within SQL commands, which can lead to SQL injection attacks. This flaw can allow attackers to manipulate the application's database queries, potentially accessing, modifying, or deleting sensitive data. The vulnerability affects versions from n/a to 2.0.6 of Zoho Campaigns, posing a risk to users who fail to implement proper security measures. Organizations utilizing this software should assess their current deployments and take necessary actions to mitigate the risk associated with this vulnerability.
Affected Version(s)
Zoho Campaigns <= 2.0.6