CVE-2023-27843 Information
Apr 27, 2023
cve
Description
SQL injection vulnerability found in PrestaShop askforaquote v.5.4.2 and before allow a remote attacker to gain privileges via the QuotesProduct::deleteProduct component.
Reference
https://friends-of-presta.github.io/security-advisories/modules/2023/04/25/askforaquote.html https://addons.prestashop.com/en/quotes/3725-ask-for-a-quote-convert-to-order-messaging-system.html
Share on: