main/resources/mapper/NewBeeMallGoodsMapper.xml in newbee-mall (aka New Bee) before 2019-10-23 allows search?goodsCategoryId=&keyword= SQL Injection.
References
Link Resource
https://github.com/newbee-ltd/newbee-mall/issues/1 Exploit Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2019-11-18T16:56:58

Updated: 2019-11-18T16:56:58

Reserved: 2019-11-18T00:00:00


Link: CVE-2019-19113

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2019-11-18T17:15:11.707

Modified: 2019-12-03T16:24:41.887


Link: CVE-2019-19113

JSON object: View

cve-icon Redhat Information

No data.

CWE