Improper neutralization of SQL parameter in Theme Volty CMS Category Product module for PrestaShop. In the module “Theme Volty CMS Category Product” (tvcmscategoryproduct) up to version 4.0.1 from Theme Volty for PrestaShop, a guest can perform SQL injection in affected versions.
Metrics
Affected Vendors & Products
References
History
Fri, 20 Sep 2024 17:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2023-10-03T00:00:00
Updated: 2024-09-20T16:30:03.089Z
Reserved: 2023-08-07T00:00:00
Link: CVE-2023-39647
Vulnrichment
Updated: 2024-08-02T18:18:09.570Z
NVD
Status : Modified
Published: 2023-10-03T23:15:09.380
Modified: 2024-11-21T08:15:45.220
Link: CVE-2023-39647
Redhat
No data.