CVE-2023-43610

Publication date

2023-09-26 08:19:11

Family

jpcert

State

PUBLISHED

Description

SQL injection vulnerability in Order Data Edit page of Welcart e-Commerce versions 2.7 to 2.8.21 allows a user with editor (without setting authority) or higher privilege to perform unintended database operations.