PT-2023-22559 · Prestashop · Prestashop Leocustomajax
CVE-2023-30150
·
Publicado
2023-06-14
·
Atualizado
2025-01-06
CVSS v3.1
9.8
Crítica
| Vetor | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
PrestaShop leocustomajax version 1.0
PrestaShop leocustomajax version 1.0.0
Description
The issue is related to SQL Injection. It affects the module via the "modules/leocustomajax/leoajax.php" endpoint.
Recommendations
For PrestaShop leocustomajax version 1.0, consider disabling the
leoajax.php module until a patch is available.
For PrestaShop leocustomajax version 1.0.0, consider disabling the leoajax.php module until a patch is available.Correção
SQL injection
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Prestashop Leocustomajax