CVE-2023-36645
Severity CVSS v4.0:
Pending analysis
Type:
CWE-94
Code Injection
Publication date:
04/04/2024
Last modified:
24/04/2025
Description
SQL injection vulnerability in ITB-GmbH TradePro v9.5, allows remote attackers to run SQL queries via oordershow component in customer function.
Impact
Base Score 3.x
9.10
Severity 3.x
CRITICAL
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:itb-pim:tradepro:9.5:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



