PT-2024-33573 · Unknown · Mytweetlinks

João Pedro S Alcântara

·

Published

2024-10-20

·

Updated

2024-10-22

·

CVE-2024-49618

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions MyTweetLinks versions n/a through 1.1.1
Description The issue is related to an SQL Injection vulnerability due to improper neutralization of special elements in SQL commands, allowing Blind SQL Injection. This can lead to data compromise.
Recommendations For versions n/a through 1.1.1, patch immediately to mitigate the risk of exploitation. Monitor for exploitation attempts to ensure the security of the system. As a temporary workaround, consider restricting access to sensitive data until a patch is applied.

Fix

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2024-49618

Affected Products

Mytweetlinks