Looking for the vulnerability index of Invicti's legacy products?
AbanteCart Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability - CVE-2024-50801 - Vulnerability Database

AbanteCart Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability - CVE-2024-50801

Medium
Reference: CVE-2024-50801
Title: AbanteCart Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability
Overview:

A SQL Injection vulnerability was discovered in AbanteCart 1.4.0 in the update() function in public_html/admin/controller/responses/listing_grid/collections.php. The vulnerability is exploitable via the id parameter.