Vulnerability CVE-2024-36082


Published: 2024-06-07

Description:
SQL injection vulnerability in Music Store - WordPress eCommerce versions prior to 1.1.14 allows a remote authenticated attacker with an administrative privilege to execute arbitrary SQL commands. Information stored in the database may be obtained or altered by the attacker.

 References:
https://wordpress.org/plugins/music-store/
https://plugins.trac.wordpress.org/changeset?new=3085975%40music-store%2Ftrunk%2Fmusic-store.php&old=3079647%40music-store%2Ftrunk%2Fmusic-store.php
https://jvn.jp/en/jp/JVN79213252/

Copyright 2026, cxsecurity.com

 

Back to Top