First published: Thu Aug 29 2024(Updated: )
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in StylemixThemes Cost Calculator Builder allows SQL Injection.This issue affects Cost Calculator Builder: from n/a through 3.2.15.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
StylemixThemes Cost Calculator Builder | <3.2.16 |
Update to 3.2.16 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-43144 is categorized as a critical SQL Injection vulnerability.
To resolve CVE-2024-43144, upgrade the Cost Calculator Builder plugin to version 3.2.16 or later.
CVE-2024-43144 affects Cost Calculator Builder versions from n/a up to 3.2.15.
CVE-2024-43144 is an SQL Injection vulnerability due to improper neutralization of special elements in SQL commands.
Users of StylemixThemes Cost Calculator Builder versions up to 3.2.15 are impacted by CVE-2024-43144.