Critical severity9.4NVD Advisory· Published Oct 10, 2024· Updated Jun 17, 2026
CVE-2024-9201
CVE-2024-9201
Description
The SEUR plugin, in its versions prior to 2.5.11, is vulnerable to time-based SQL injection through the use of the ‘id_order’ parameter of the ‘/modules/seur/ajax/saveCodFee.php’ endpoint.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3<2.5.11+ 1 more
- (no CPE)range: <2.5.11
- (no CPE)range: 0
Patches
Vulnerability mechanics
References
1- www.incibe.es/en/incibe-cert/notices/aviso/sql-injection-vulnerability-seur-pluginnvdThird Party Advisory
News mentions
0No linked articles in our index yet.