cleantalk
Vulnerabilities and Security Researches

Email Subscription Popup, CVE-2025-24587

CVE, Research URL

CVE-2025-24587

Published on
Jan 24, 2025
Research Description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in I Thirteen Web Solution Email Subscription Popup allows Blind SQL Injection. This issue affects Email Subscription Popup: from n/a through 1.2.23.
Affected versions
max 1.2.24.
Status
vulnerable