TROYANOSYVIRUS
Voltar para CVEs

CVE-2025-41002

N/A

Descricao

SQL injection vulnerability in Infoticketing. This vulnerability allows an unauthenticated attacker to retrieve, create, update, and delete the database by sending a POST request using the 'code' parameter in '/components/cart/cartApplyDiscount.php'.

Detalhes CVE

Pontuacao CVSS v3.1N/A
Publicado2/23/2026
Ultima modificacao2/23/2026
Fontenvd
Avistamentos honeypot0

Fraquezas (CWE)

CWE-89

Correlacoes IOC

Sem correlacoes registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.