CVE-2024-50539
CVSS 3.1 Score 8.5 of 10 (high)
Details
Published Nov 9, 2024
Updated: Nov 12, 2024
CWE ID 89
Summary
CVE-2024-50539: A significant vulnerability has been identified in the Lodgix Lodgix.Com Vacation Rental Website Builder. This issue involves improper neutralization of special elements in SQL commands, leading to SQL Injection. Impacted versions range from n/a to 3.9.73. Attackers can leverage this vulnerability to execute malicious SQL queries, potentially leading to unauthorized access, data theft, or system damage. Users of the Lodgix.Com Vacation Rental Website Builder are advised to apply the necessary patches or upgrades promptly to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.