CVE-2024-33267
April 30, 2024, 5:52 p.m.
Tags
Product(s) Impacted
Hero hfheropayment
- 1.2.5
- before 1.2.5
Hero hfheropayment
- 1.2.5 and before
Description
SQL Injection vulnerability in Hero hfheropayment v.1.2.5 and before allows an attacker to escalate privileges via the HfHeropaymentGatewayBackModuleFrontController::initContent() function.
Weaknesses
Date
Published: April 30, 2024, 3:15 p.m.
Last Modified: April 30, 2024, 5:52 p.m.
Status : Awaiting Analysis
CVE has been recently published to the CVE List and has been received by the NVD.
More infoSource
cve@mitre.org