CVE-2024-30495
CVSS 3.1 Score 7.6 of 10 (high)
Details
Summary
CVE-2024-30495 is a newly disclosed SQL injection vulnerability affecting the Falang multilanguage software. The issue stems from improper neutralization of special elements in SQL commands, allowing unauthorized users to inject malicious code and potentially gain unauthorized access to sensitive data. Affected versions of Falang multilanguage range from n/a to 1.3.47. Successful exploitation could lead to data breaches, unauthorized modifications, or even system takeover. Users are urged to update to the latest version or implement appropriate security measures to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.