CVE-2024-48040: WordPress Tainacan plugin <= 0.21.8 - SQL Injection vulnerability
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in tainacan Tainacan tainacan allows SQL Injection.This issue affects Tainacan: from n/a through <= 0.21.8.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-48040?
The CVE-2024-48040 vulnerability is classified as a critical severity SQL Injection vulnerability affecting Tainacan versions up to 0.21.8.
How do I fix CVE-2024-48040?
To fix CVE-2024-48040, update Tainacan to version 0.21.9 or later where the vulnerability is patched.
What impact does CVE-2024-48040 have on my system?
CVE-2024-48040 can allow attackers to execute arbitrary SQL commands, potentially compromising the database and sensitive data.
Is CVE-2024-48040 limited to Tainacan installations?
Yes, CVE-2024-48040 specifically affects Tainacan and the WordPress Tainacan plugin up to version 0.21.8.
How can I check if my Tainacan installation is vulnerable to CVE-2024-48040?
You can check your Tainacan version against the affected versions list, specifically looking for versions up to and including 0.21.8.