Vulnerability CVE-2024-25469


Published: 2024-02-23   Modified: 2024-02-24

Description:
SQL Injection vulnerability in CRMEB crmeb_java v.1.3.4 and before allows a remote attacker to obtain sensitive information via the latitude and longitude parameters in the api/front/store/list component.

 References:
https://github.com/crmeb/crmeb_java/
https://github.com/crmeb/crmeb_java/issues/20

Copyright 2026, cxsecurity.com

 

Back to Top