Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qf3v-5j25-cjgv

Опубликовано: 29 апр. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 6.8

Описание

SQL injection vulnerability in KnowBand for PrestaShop autosuggest before 2.0.0 allows an attacker to run arbitrary SQL commands via the AutosuggestSearchModuleFrontController::initContent(), and AutosuggestSearchModuleFrontController::getKbProducts() components.

SQL injection vulnerability in KnowBand for PrestaShop autosuggest before 2.0.0 allows an attacker to run arbitrary SQL commands via the AutosuggestSearchModuleFrontController::initContent(), and AutosuggestSearchModuleFrontController::getKbProducts() components.

EPSS

Процентиль: 13%
0.00043
Низкий

6.8 Medium

CVSS3

Дефекты

CWE-89

Связанные уязвимости

CVSS3: 6.8
nvd
почти 2 года назад

SQL injection vulnerability in KnowBand for PrestaShop autosuggest before 2.0.0 allows an attacker to run arbitrary SQL commands via the AutosuggestSearchModuleFrontController::initContent(), and AutosuggestSearchModuleFrontController::getKbProducts() components.

EPSS

Процентиль: 13%
0.00043
Низкий

6.8 Medium

CVSS3

Дефекты

CWE-89