9.8
CVSSv3

CVE-2023-48925

Published: 14/12/2023 Updated: 18/12/2023
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

SQL injection vulnerability in Buy Addons bavideotab before version 1.0.6, allows malicious users to escalate privileges and obtain sensitive information via the component BaVideoTabSaveVideoModuleFrontController::run().

Vulnerable Product Search on Vulmon Subscribe to Product

buy-addons bavideotab