CVE-2024-28392: SQL Injection
SQL injection vulnerability in pscartabandonmentpro v.2.0.11 and before allows a remote attacker to escalate privileges via the pscartabandonmentproFrontCAPUnsubscribeJobModuleFrontController::setEmailVisualized() method.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-28392?
CVE-2024-28392 has a medium severity rating due to its potential for privilege escalation via SQL injection.
How do I fix CVE-2024-28392?
To fix CVE-2024-28392, upgrade to the latest version of pscartabandonmentpro released after version 2.0.11.
Who is affected by CVE-2024-28392?
CVE-2024-28392 affects all users of pscartabandonmentpro version 2.0.11 and earlier.
What potential impact does CVE-2024-28392 have?
CVE-2024-28392 allows a remote attacker to escalate privileges, potentially compromising the integrity and confidentiality of the application.
Is there a workaround available for CVE-2024-28392?
There is no known workaround for CVE-2024-28392, so upgrading the software is the recommended solution.