VYPR
Medium severity6.3NVD Advisory· Published Jun 13, 2022· Updated Jun 17, 2026

CVE-2017-20042

CVE-2017-20042

Description

A vulnerability has been found in Navetti PricePoint 4.6.0.0 and classified as critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to sql injection (Blind). The attack can be launched remotely. Upgrading to version 4.7.0.0 is able to address this issue. It is recommended to upgrade the affected component.

Affected products

2
  • Navetti/PricePointllm-fuzzy2 versions
    <4.7.0.0+ 1 more
    • (no CPE)range: <4.7.0.0
    • (no CPE)range: 4.6.0.0

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.