Описание
In the module "So Flexibilite" (soflexibilite) from Common-Services for PrestaShop < 4.1.26, a guest (authenticated customer) can perform Cross Site Scripting (XSS) injection.
Ссылки
- Product
- ExploitThird Party Advisory
- Product
- ExploitThird Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 4.1.14 (исключая)
cpe:2.3:a:common-services:so_flexibilite:*:*:*:*:*:prestashop:*:*
EPSS
Процентиль: 25%
0.00085
Низкий
5.9 Medium
CVSS3
Дефекты
CWE-79
Связанные уязвимости
CVSS3: 5.9
github
почти 2 года назад
In the module "So Flexibilite" (soflexibilite) from Common-Services for PrestaShop < 4.1.26, a guest (authenticated customer) can perform Cross Site Scripting (XSS) injection.
EPSS
Процентиль: 25%
0.00085
Низкий
5.9 Medium
CVSS3
Дефекты
CWE-79