ZeroHour

CVE-2023-24763

PoC
CVSS 3.1
8.8 high
EPSS
<1%p57
Published
()
Modified
Description

In the module "Xen Forum" (xenforum) for PrestaShop, an authenticated user can perform SQL injection in versions up to 2.13.0.

Vendors
prestashop
Products
xen forum
Ecosystems
E-commerce
Weakness
CWE-89
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.