Vulnerability CVE-2022-4961


Published: 2024-01-12

Description:
A vulnerability was found in Weitong Mall 1.0.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file platform-shop\src\main\resources\com\platform\dao\OrderDao.xml. The manipulation of the argument sidx/order leads to sql injection. The associated identifier of this vulnerability is VDB-250243.

Type:

CWE-89

(Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection'))

 References:
https://vuldb.com/?id.250243
https://vuldb.com/?ctiid.250243
https://gitee.com/fuyang_lipengjun/platform/issues/I5XC79

Copyright 2026, cxsecurity.com

 

Back to Top