The PrestaShop e-commerce platform... CVE-2023-23315

- AV AC AU C I A
发布: 2023-03-01
修订: 2023-03-10

The PrestaShop e-commerce platform module stripejs contains a Blind SQL injection vulnerability up to version 4.5.5. The method `stripejsValidationModuleFrontController::initContent()` has sensitive SQL calls that can be executed with a trivial http call and exploited to forge a SQL injection.

0%
暂无可用Exp或PoC
当前有1条受影响产品信息