Back

CRITICAL

SQL injection in Janobe products

Published Aug 6, 2024

Description

SQL injection vulnerability in PayPal, Credit Card and Debit Card Payment affecting version 1.0. An attacker could exploit this vulnerability by sending a specially crafted query to the server and retrieve all the information stored in it through the following 'username' in '/login.php' parameter.

Affected products

Remediation

Vendor solution

There is no reported solution at this time.

Weaknesses (1)

References (2)

Change history (0)

No recorded changes yet.

Sources

CVE.org / MITRE

Status PUBLISHED
Assigner INCIBE
Published Aug 6, 2024
Updated Aug 7, 2024
Reserved Apr 29, 2024

CISA Vulnrichment

Updated Aug 7, 2024

NVD

Status Analyzed
Modified Jun 17, 2026

Red Hat

No data

ENISA EUVD

Assigner INCIBE
Published Aug 6, 2024
Updated Aug 7, 2024

GitHub

No data