Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-h3r2-qmh3-6432

Опубликовано: 27 фев. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

In the module "Import/Update Bulk Product from any Csv/Excel File Pro" (ba_importer) up to version 1.1.28 from Buy Addons for PrestaShop, a guest can perform SQL injection in affected versions.

In the module "Import/Update Bulk Product from any Csv/Excel File Pro" (ba_importer) up to version 1.1.28 from Buy Addons for PrestaShop, a guest can perform SQL injection in affected versions.

EPSS

Процентиль: 36%
0.0015
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-89

Связанные уязвимости

CVSS3: 9.8
nvd
почти 2 года назад

In the module "Import/Update Bulk Product from any Csv/Excel File Pro" (ba_importer) up to version 1.1.28 from Buy Addons for PrestaShop, a guest can perform SQL injection in affected versions.

EPSS

Процентиль: 36%
0.0015
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-89