CVE-2021-31867
EUVD-2021-1874204.08.2021, 23:15
Pimcore Customer Data Framework version 3.0.0 and earlier suffers from a Boolean-based blind SQL injection issue in the $id parameter of the SegmentAssignmentController.php component of the application. This issue was fixed in version 3.0.2 of the product.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| pimcore | customer_management_framework | 𝑥 < 3.0.2 |
𝑥
= Vulnerable software versions