Vulnerabilities (CVE)

Filtered by vendor Seur Subscribe
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-9201 1 Seur 1 Seur 2024-10-16 N/A 9.8 CRITICAL
The SEUR plugin, in its versions prior to 2.5.11, is vulnerable to time-based SQL injection through the use of the ‘id_order’ parameter of the ‘/modules/seur/ajax/saveCodFee.php’ endpoint.