SQL Injection vulnerability in Boostmyshop (boostmyshopagent) module for Prestashop versions 1.1.9 and before, allows remote attackers to escalate privileges and obtain sensitive information via changeOrderCarrier.php, relayPoint.php, and shippingConfirmation.php.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2024-02-09T00:00:00

Updated: 2024-08-19T16:28:40.786Z

Reserved: 2024-01-25T00:00:00

Link: CVE-2024-24308

cve-icon Vulnrichment

Updated: 2024-08-01T23:19:52.020Z

cve-icon NVD

Status : Modified

Published: 2024-02-09T08:15:08.707

Modified: 2024-08-19T17:35:09.203

Link: CVE-2024-24308

cve-icon Redhat

No data.