PT-2026-4455 · Neoforum · Neoforum

Mrreee

·

Published

2026-01-23

·

Updated

2026-01-24

·

CVE-2026-24624

CVSS v3.1

7.6

High

VectorAV:N/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:L
Name of the Vulnerable Software and Affected Versions Neoforum versions prior to 1.0
Description The software contains a flaw due to improper neutralization of special elements within SQL commands, leading to a Blind SQL Injection condition. This allows for potential unauthorized access or manipulation of data.
Recommendations Update to a version greater than 1.0.

Fix

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2026-24624

Affected Products

Neoforum