logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2023-23315

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2023-23315

Description:
The PrestaShop e-commerce platform module stripejs contains a Blind SQL injection vulnerability up to version 4.5.5. The method `stripejsValidationModuleFrontController::initContent()` has sensitive SQL calls that can be executed with a trivial http call and exploited to forge a SQL injection.
Last updated date:
03/10/2023
Type:
exploit
Confidence:
HIGH
Date of publishing:
03/10/2023
Reference url to background

https://friends-of-presta.github.io/security-advisories/modules/2023/03/01/stripejs.html

Vulnerability FeedContributorsAboutBlog

@inTheWild

©2024

Privacy Policy