CVE-2023-4531

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Mestav Software E-commerce Software allows SQL Injection. This issue affects E-commerce Software: before 20230901 .

critical 9.8 CVSS 3.1
Published: Sep 5, 2023
Modified: May 21, 2026
Vendor: Mestav
Product: E-Commerce Software

Description

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Mestav Software E-commerce Software allows SQL Injection.

This issue affects E-commerce Software: before 20230901 .

References