cve/2024/CVE-2024-49244.md
2025-09-29 21:09:30 +02:00

19 lines
941 B
Markdown

### [CVE-2024-49244](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-49244)
![](https://img.shields.io/static/v1?label=Product&message=CSV%20Product%20Import%20Export%20for%20WooCommerce&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa%20&color=brightgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=CWE-89%20Improper%20Neutralization%20of%20Special%20Elements%20used%20in%20an%20SQL%20Command%20('SQL%20Injection')&color=brightgreen)
### Description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in cmssoft CSV Product Import Export for WooCommerce allows SQL Injection.This issue affects CSV Product Import Export for WooCommerce: from n/a through 1.0.0.
### POC
#### Reference
No PoCs from references.
#### Github
- https://github.com/20142995/nuclei-templates
- https://github.com/cyb3r-w0lf/nuclei-template-collection