CVE-2024-49620

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in mrcheck116 FERMA.ru.net ferma-ru-net-checkout allows Blind SQL Injection.This issue affects FERMA.ru.net: from n/a through <= 1.3.3.
Configurations

Configuration 1 (hide)

cpe:2.3:a:naudinvladimir:ferma.ru.net:*:*:*:*:*:wordpress:*:*

History

01 Apr 2026, 16:18

Type Values Removed Values Added
Summary (en) Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Naudin Vladimir FERMA.Ru.Net allows Blind SQL Injection.This issue affects FERMA.Ru.Net: from n/a through 1.3.3. (en) Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in mrcheck116 FERMA.ru.net ferma-ru-net-checkout allows Blind SQL Injection.This issue affects FERMA.ru.net: from n/a through <= 1.3.3.
References
  • {'url': 'https://patchstack.com/database/vulnerability/ferma-ru-net-checkout/wordpress-ferma-ru-net-plugin-1-3-3-sql-injection-vulnerability?_s_id=cve', 'tags': ['Third Party Advisory'], 'source': 'audit@patchstack.com'}
  • () https://patchstack.com/database/Wordpress/Plugin/ferma-ru-net-checkout/vulnerability/wordpress-ferma-ru-net-plugin-1-3-3-sql-injection-vulnerability?_s_id=cve -

22 Oct 2024, 18:50

Type Values Removed Values Added
First Time Naudinvladimir ferma.ru.net
Naudinvladimir
CVSS v2 : unknown
v3 : 8.5
v2 : unknown
v3 : 8.8
CPE cpe:2.3:a:naudinvladimir:ferma.ru.net:*:*:*:*:*:wordpress:*:*
References () https://patchstack.com/database/vulnerability/ferma-ru-net-checkout/wordpress-ferma-ru-net-plugin-1-3-3-sql-injection-vulnerability?_s_id=cve - () https://patchstack.com/database/vulnerability/ferma-ru-net-checkout/wordpress-ferma-ru-net-plugin-1-3-3-sql-injection-vulnerability?_s_id=cve - Third Party Advisory

21 Oct 2024, 17:09

Type Values Removed Values Added
Summary
  • (es) Vulnerabilidad de neutralización incorrecta de elementos especiales utilizados en un comando SQL ('Inyección SQL') en Naudin Vladimir FERMA.Ru.Net permite la inyección SQL ciega. Este problema afecta a FERMA.Ru.Net: desde n/a hasta 1.3.3.

20 Oct 2024, 10:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-10-20 10:15

Updated : 2026-04-01 16:18


NVD link : CVE-2024-49620

Mitre link : CVE-2024-49620

CVE.ORG link : CVE-2024-49620


JSON object : View

Products Affected

naudinvladimir

  • ferma.ru.net
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')