CVE-2021-31867
04.08.2021, 23:15
Pimcore Customer Data Framework version 3.0.0 and earlier suffers from a Boolean-based blind SQL injection issue in the $id parameter of the SegmentAssignmentController.php component of the application. This issue was fixed in version 3.0.2 of the product.
Vendor | Product | Version |
---|---|---|
pimcore | customer_management_framework | 𝑥 < 3.0.2 |
𝑥
= Vulnerable software versions