CVE-2023-45256 Information

Description

Multiple SQL injection vulnerabilities in the EuroInformation MoneticoPaiement module before 1.1.1 for PrestaShop allow remote attackers to execute arbitrary SQL commands via the TPE societe MAC reference or aliascb parameter to transaction.php validation.php or callback.php.

Reference

https://security.friendsofpresta.org/modules/2025/06/10/MoneticoPaiement.html https://www.monetico-paiement.fr/fr/installer/telechargements/kit_telechargeable.aspx?_tabi=I0&_pid=ValidateLicencePage

CNNVD-202506-1692 (Published: 2025-06-12)

Share on: