Vulnerability Description
Super Store Finder v3.6 was discovered to contain multiple SQL injection vulnerabilities in the store locator component via the products, distance, lat, and lng parameters.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Superstorefinder | Super Store Finder | 3.6 |
Related Weaknesses (CWE)
References
- https://github.com/redblueteam/CVE-2023-41507/ExploitRelease NotesThird Party Advisory
- https://superstorefinder.net/support/forums/topic/super-store-finder-patch-notesRelease Notes
- https://github.com/redblueteam/CVE-2023-41507/ExploitRelease NotesThird Party Advisory
- https://superstorefinder.net/support/forums/topic/super-store-finder-patch-notesRelease Notes
FAQ
What is CVE-2023-41507?
CVE-2023-41507 is a vulnerability with a CVSS score of 9.8 (CRITICAL). Super Store Finder v3.6 was discovered to contain multiple SQL injection vulnerabilities in the store locator component via the products, distance, lat, and lng parameters.
How severe is CVE-2023-41507?
CVE-2023-41507 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2023-41507?
Check the references section above for vendor advisories and patch information. Affected products include: Superstorefinder Super Store Finder.