1 results (0.001 seconds)

CVSS: 10.0EPSS: 0%CPEs: 1EXPL: 1

19 Jan 2024 — In the module "Sliding cart block" (blockslidingcart) up to version 2.3.8 from PrestashopModules.eu for PrestaShop, a guest can perform SQL injection. En el módulo "Sliding cart block" (blockslidingcart) hasta la versión 2.3.8 de PrestashopModules.eu para PrestaShop, un invitado puede realizar una inyección SQL. • https://addons.prestashop.com/en/express-checkout-process/3321-block-sliding-cart.html • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •