PT-2023-15437 · Inspireui · Inspireui Mstore Api Plugin

Lucio Sá

·

Published

2023-06-23

·

Updated

2023-07-03

·

CVE-2022-47614

CVSS v3.1

7.5

High

VectorAV:N/AC:H/PR:N/UI:N/S:C/C:H/I:N/A:L
Name of the Vulnerable Software and Affected Versions InspireUI MStore API plugin versions prior to 3.9.8
Description The issue is related to an unauthorized SQL Injection vulnerability in the InspireUI MStore API plugin.
Recommendations For versions prior to 3.9.8, update to version 3.9.8 or later to resolve the issue.

Fix

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2022-47614

Affected Products

Inspireui Mstore Api Plugin