RULE(RULE ID:338238)

Rule General Information
Release Date: 2024-07-09
Rule Name: OpenCart E-commerce Platform divido.php SQL Injection Vulnerability
Severity:
CVE ID:
Rule Protection Details
Description: OpenCart is an open-source e-commerce platform that offers a user-friendly interface and robust functionality for creating and managing online stores with ease.The divido.php of OpenCart has a SQL injection vulnerability, which attackers can exploit to execute malicious SQL commands, potentially gaining unauthorized access to, modifying, or deleting sensitive information in the database, thereby posing a severe threat to data security and system integrity.
Impact: An attacker can inject arbitrary sql commands to view or change the database of the target by exploiting the vulnerability successfully.
Affected OS: Windows, Linux, Others
Reference:
Solutions
Please contact the software vendor to update the software patch.