Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-236j-rfx5-wq38: OpenCart allows users on admin page to obtain database information or read server files through SQL injection

OpenCart 3.0.3.7 allows users to obtain database information or read server files through SQL injection in the background.

ghsa
#sql#git

OpenCart allows users on admin page to obtain database information or read server files through SQL injection

Moderate severity GitHub Reviewed Published Nov 3, 2022 • Updated Nov 4, 2022

Related news

CVE-2021-37823: SQL injection exists in the background of OpenCart - Extrader - Medium

OpenCart 3.0.3.7 allows users to obtain database information or read server files through SQL injection in the background.

CVE-2021-37823: SQL injection exists in the background of OpenCart - Extrader - Medium

OpenCart 3.0.3.7 allows users to obtain database information or read server files through SQL injection in the background.