What the vulnerability does
01Description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Guelben Bravo Translate.This issue affects Bravo Translate: from n/a through 1.2.
CVSS base score
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:L
What the vulnerability does
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Guelben Bravo Translate.This issue affects Bravo Translate: from n/a through 1.2.
Explanation of Vulnerability in Simple Terms
Bravo Translate versions up to 1.2 contain a SQL injection vulnerability in a high-privilege context. An authenticated administrator can craft malicious input to read or modify database contents. The vulnerability requires admin-level access and does not affect data integrity, but can expose sensitive information and degrade system availability.
What an attacker can do
Read sensitive data from the database or cause the site to become slow or unresponsive.
Potential impact on your site
An admin account compromise could expose your database contents or disrupt site performance.
Conditions required to exploit
Attacker must have administrator-level access to the site.
Key dates
External resources
Related vulnerabilities