CVE-2023-23315

CVE-2023-23315

The PrestaShop e-commerce platform module stripejs contains a Blind SQL injection vulnerability up to version 4.5.5. The method `stripejsValidationModuleFrontController::initContent()` has sensitive SQL calls that can be executed with a trivial http call and exploited to forge a SQL injection.

Source: CVE-2023-23315

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다