Medium severity6.3NVD Advisory· Published Jun 13, 2022· Updated Jun 17, 2026
CVE-2017-20042
CVE-2017-20042
Description
A vulnerability has been found in Navetti PricePoint 4.6.0.0 and classified as critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to sql injection (Blind). The attack can be launched remotely. Upgrading to version 4.7.0.0 is able to address this issue. It is recommended to upgrade the affected component.
Affected products
2<4.7.0.0+ 1 more
- (no CPE)range: <4.7.0.0
- (no CPE)range: 4.6.0.0
Patches
Vulnerability mechanics
References
2- seclists.org/fulldisclosure/2017/Mar/24nvdMailing ListThird Party Advisory
- vuldb.comnvdThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.