SQL Injection Vulnerability Affects GeoDirectory From n/a to 2.3.61
CVE-2024-43145
What is CVE-2024-43145?
AyeCode Ltd's GeoDirectory plugin is experiencing a vulnerability that allows for improper neutralization of special elements used in SQL commands, commonly referred to as an SQL Injection. This issue enables attackers to manipulate backend databases through unvalidated user input, potentially leading to data leakage, unauthorized data modifications, and other malicious activities. The vulnerability affects all versions leading up to and including 2.3.61, requiring immediate attention from users to apply security updates or patches available from the vendor.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
GeoDirectory <= 2.3.61
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved