CVE-2024-33266
EUVD-2024-3101129.04.2024, 20:15
SQL Injection vulnerability in Helloshop deliveryorderautoupdate v.2.8.1 and before allows an attacker to run arbitrary SQL commands via the DeliveryorderautoupdateOrdersModuleFrontController::initContent function.
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| helloshop | deliveryorderautoupdate | 𝑥 ≤ v.2.8.1 | ADP |