First published: Mon Jul 22 2024(Updated: )
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in UkrSolution Barcode Scanner with Inventory & Order Manager allows SQL Injection.This issue affects Barcode Scanner with Inventory & Order Manager: from n/a through 1.6.1.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
UkrSolution Barcode Scanner and Inventory Manager | <1.6.2 |
Update to 1.6.2 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-38708 is classified as an SQL Injection vulnerability that can lead to unauthorized database access and data manipulation.
To fix CVE-2024-38708, upgrade the UkrSolution Barcode Scanner with Inventory & Order Manager plugin to version 1.6.2 or later.
CVE-2024-38708 affects all versions of the UkrSolution Barcode Scanner with Inventory & Order Manager plugin from n/a to 1.6.1.
SQL Injection in the context of CVE-2024-38708 refers to the improper handling of user input, allowing attackers to execute arbitrary SQL commands.
Yes, CVE-2024-38708 specifically affects the Wordpress version of the UkrSolution Barcode Scanner with Inventory & Order Manager.