CVE-2024-30495: WordPress Falang multilanguage for WordPress plugin <= 1.3.47 - SQL Injection vulnerability
Published Mar 29, 2024
·Updated
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Faboba Falang multilanguage.This issue affects Falang multilanguage: from n/a through 1.3.47.
Affected Software
3 affected components
Faboba Falang multilanguage>=1.3.47
WordPress Falang<=1.3.47
Faboba Falang Wordpress<1.3.48
Remediation
Information
Update to 1.3.48 or a higher version.
Event History
Mar 29, 2024
CVE Published
via MITRE·01:56 PM
Data Sourced
via MITRE·01:56 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-30495?
CVE-2024-30495 has been classified as a high severity vulnerability due to its potential for SQL injection attacks.
2
How do I fix CVE-2024-30495?
To fix CVE-2024-30495, update your Faboba Falang multilanguage plugin to version 1.3.48 or later.
3
Which versions of Faboba Falang multilanguage are affected by CVE-2024-30495?
CVE-2024-30495 affects all versions of Faboba Falang multilanguage from n/a through 1.3.47.
4
What type of vulnerability is CVE-2024-30495?
CVE-2024-30495 is an SQL Injection vulnerability that allows for improper neutralization of special elements in SQL commands.
5
Can CVE-2024-30495 be exploited remotely?
Yes, CVE-2024-30495 can potentially be exploited remotely to gain unauthorized access to the database.