CVE-2024-51619

CVSS 3.1 Score 8.5 of 10 (high)

Details

Published Nov 9, 2024
Updated: Nov 12, 2024
CWE ID 89

Summary

CVE-2024-51619 represents a significant SQL Injection vulnerability in Market360's Market 360 Viewer. Unlike typical SQL Injection flaws, this issue permits Blind SQL Injection, meaning an attacker can inject malicious SQL commands without directly observing the results. The vulnerability impacts Market 360 Viewer versions from n/a through 1.01, posing a serious threat to the affected software's security. An attacker might exploit this vulnerability to gain unauthorized access to sensitive data, alter or delete critical information, or even install malware. Organizations relying on Market 360 Viewer should promptly update to a secure version to mitigate the risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share