CVE-2024-33267

Publication date

2024-04-30 00:00:00

Family

mitre

State

PUBLISHED

Description

SQL Injection vulnerability in Hero hfheropayment v.1.2.5 and before allows an attacker to escalate privileges via the HfHeropaymentGatewayBackModuleFrontController::initContent() function.