CVE-2024-37699
Severity CVSS v4.0:
Pending analysis
Type:
CWE-89
SQL Injection
Publication date:
20/06/2024
Last modified:
15/04/2026
Description
An issue in DataLife Engine v.17.1 and before is vulnerable to SQL Injection in dboption.
Impact
Base Score 3.x
9.80
Severity 3.x
CRITICAL
References to Advisories, Solutions, and Tools
- https://dle-news.ru/pressrelease/1909-datalife-engine-v172-press-release.html
- https://exploit.az/threads/datalife-engine-dle-sql-inyeksiyasi-17-0.19/
- https://exploit.az/threads/datalife-engine-dle-sql-inyeksiyasi-sql-injection-sql-inekcija-17-1.19/
- https://dle-news.ru/pressrelease/1909-datalife-engine-v172-press-release.html
- https://exploit.az/threads/datalife-engine-dle-sql-inyeksiyasi-17-0.19/
- https://exploit.az/threads/datalife-engine-dle-sql-inyeksiyasi-sql-injection-sql-inekcija-17-1.19/



