Fiche vulnérabilité
CVE-2024-22283 : faille élevée delhivery logistics courier (CVSS 8.8)
Description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Delhivery Delhivery Logistics Courier.This issue affects Delhivery Logistics Courier: from n/a through 1.0.107.
En bref
- Sévérité
- Élevée (CVSS 8.8)
- Vecteur CVSS
- CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
- Exploitation active
- Non signalée par la CISA
- Publication
- 27 janv. 2024
- Dernière mise à jour
- 17 juin 2026
Produits concernés
- delhivery logistics courier