IPS Community Suite is vulnerable to unauthenticated SQL injection via the filter[] parameter in the /index.php?/store/ endpoint, allowing attackers to extract sensitive information from the database.
id: CVE-2024-30163
info:
name: IPS Community Suite - Unauthenticated SQL Injection
author: riti
...