The Journal theme before 3.1.0 for OpenCart allows exposure of sensitive data via SQL errors.
The product generates an error message that includes sensitive information about its environment, users, or associated data.
Link | Tags |
---|---|
https://docs.journal-theme.com/changelog | third party advisory release notes |
https://www.getastra.com/blog/911/plugin-exploit/sql-errors-data-exposure-in-journal-opencart-theme/ | third party advisory |
https://www.jinsonvarghese.com/sensitive-data-exposure-in-journal-theme/ | third party advisory |