CVE-2024-29320

Wallos before 1.15.3 is vulnerable to SQL Injection via the category and payment parameters to /subscriptions/get.php.
Configurations

Configuration 1 (hide)

cpe:2.3:a:wallosapp:wallos:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2024-04-30 16:15

Updated : 2025-06-03 15:00


NVD link : CVE-2024-29320

Mitre link : CVE-2024-29320

CVE.ORG link : CVE-2024-29320


JSON object : View

Products Affected

wallosapp

  • wallos
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')