Vulnerability CVE-2024-28559


Published: 2024-03-22

Description:
SQL injection vulnerability in Niushop B2B2C v.5.3.3 and before allows an attacker to escalate privileges via the setPrice() function of the Goodsbatchset.php component.

 References:
https://www.niushop.com/
https://v5.niuteam.cn
https://gitee.com/niushop-team/niushop_b2c_v5
https://v5.niuteam.cn/
https://chiggerlor.substack.com/p/cve-2024-28560-cve-2024-28559

Copyright 2026, cxsecurity.com

 

Back to Top