Record summary

CVE-2024-32136 has a selected CVSS score of 7.6 (high); EIP currently links 1 repository PoC.

Description

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Xenioushk BWL Advanced FAQ Manager.This issue affects BWL Advanced FAQ Manager: from n/a through 2.0.3.

Description source: CVE List

Exploitation context

Available material

Repository PoCs
1

CISA SSVC decision

ExploitationNone
AutomatableNo
Technical impactPartial

CISA Coordinator · SSVC 2.0.3 · Evaluated Jun 18, 2024 · Source: CVE List

Affected products and versions

1
ProductSourceVersion rangeStatus

Default status: unaffected

CVE ListThrough 2.0.3affected

Proofs of concept

1

Repository PoCs

GitHubxbz0n/CVE-2024-32136Repository PoCby xbz0nStars: 3Not analyzed1 file

2.5 KiB

GitHub

PoC details

References

2