SQL injection vulnerability in KnowBand for PrestaShop autosuggest before 2.0.0 allows an attacker to run arbitrary SQL commands via the AutosuggestSearchModuleFrontController::initContent(), and AutosuggestSearchModuleFrontController::getKbProducts() components.
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-02T02:27:53.520Z
Reserved: 2024-04-23T00:00:00
Link: CVE-2024-33272
Updated: 2024-07-16T20:03:06.916Z
Status : Awaiting Analysis
Published: 2024-04-29T20:15:08.707
Modified: 2024-11-21T09:16:44.287
Link: CVE-2024-33272
No data.
OpenCVE Enrichment
No data.
Weaknesses