Headline
GHSA-236j-rfx5-wq38: OpenCart allows users on admin page to obtain database information or read server files through SQL injection
OpenCart 3.0.3.7 allows users to obtain database information or read server files through SQL injection in the background.
OpenCart allows users on admin page to obtain database information or read server files through SQL injection
Moderate severity GitHub Reviewed Published Nov 3, 2022 • Updated Nov 4, 2022
Related news
CVE-2021-37823: SQL injection exists in the background of OpenCart - Extrader - Medium
OpenCart 3.0.3.7 allows users to obtain database information or read server files through SQL injection in the background.
CVE-2021-37823: SQL injection exists in the background of OpenCart - Extrader - Medium
OpenCart 3.0.3.7 allows users to obtain database information or read server files through SQL injection in the background.