CVE-2024-11837

Severity CVSS v4.0:
HIGH
Type:
CWE-89 SQL Injection
Publication date:
13/12/2024
Last modified:
01/10/2025

Description

Improper Neutralization of Special Elements used in an N1QL Command ('N1QL Injection') vulnerability in PlexTrac  allows N1QL Injection.This issue affects PlexTrac: from 1.61.3 before 2.8.1.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:plextrac:plextrac:*:*:*:*:*:*:*:* 1.61.3 (including) 2.8.1 (excluding)