Description
SQL injection vulnerability in InnovaDeluxe "Manufacturer or supplier alphabetical search" (idxrmanufacturer) module for PrestaShop versions 2.0.4 and before, allows remote attackers to escalate privileges and obtain sensitive information via the methods IdxrmanufacturerFunctions::getCornersLink, IdxrmanufacturerFunctions::getManufacturersLike and IdxrmanufacturerFunctions::getSuppliersLike.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
Fri, 20 Jun 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-06-20T20:18:50.373Z
Reserved: 2023-10-23T00:00:00.000Z
Link: CVE-2023-46350
Updated: 2024-08-02T20:45:41.253Z
Status : Modified
Published: 2024-02-09T08:15:08.253
Modified: 2025-06-20T21:15:20.320
Link: CVE-2023-46350
No data.
OpenCVE Enrichment
No data.
Weaknesses