CVE-2024-25469

Publication date

2024-02-23 00:00:00

Family

mitre

State

PUBLISHED

Description

SQL Injection vulnerability in CRMEB crmeb_java v.1.3.4 and before allows a remote attacker to obtain sensitive information via the latitude and longitude parameters in the api/front/store/list component.