Pricing Table by Supsystic, 8ecbeaaa-7986-4109-a56a-3d67496330f2
- CVE, Research URL
- Home page URL
- Application
- Published on
- -
- Research Description
- Pricing Table by Supsystic [pricing-table-by-supsystic] < 1.8.9 Pricing Table by Supsystic < 1.8.9 - Authenticated SQL Injections The GET parameter sidx and sord are used in a SQL statement without being sanitised when searching for pricing tables in the dashboard, leading to an authenticated SQL Injection issues.
- Affected versions
-
max 1.8.9.
- Status
-
vulnerable
| Previous vulnerability researches |
|---|
| Elizaibots (CVE-2025-49893) , Aug 20, 2025 |
| Elizaibots (abcf8d2a13b3fd2324a04f9724e5ac9347743677) , Jun 16, 2026 |