
Published: 15/04/2024 Updated: 15/04/2024

Vulnerability Summary

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Xenioushk BWL Advanced FAQ Manager.This issue affects BWL Advanced FAQ Manager: from n/a up to and including 2.0.3.

Github Repositories

CVE-2024-32136 Exploit Title: BWL Advanced FAQ Manager 203 - Post-Authenticated SQL Injection Date: [Today's Date] Exploit Author: Ivan Spiridonov (xbz0n) Vendor Homepage: [URL of the vendor if available] Software Link: [Direct link to software or plugin] Version: 203 Tested on: [Your tested environment, eg, specific OS or configuration] CVE : CVE-2024-32136 SQL Inje