SQL injection vulnerability in InnovaDeluxe "Manufacturer or supplier alphabetical search" (idxrmanufacturer) module for PrestaShop versions 2.0.4 and before, allows remote attackers to escalate privileges and obtain sensitive information via the methods IdxrmanufacturerFunctions::getCornersLink, IdxrmanufacturerFunctions::getManufacturersLike and IdxrmanufacturerFunctions::getSuppliersLike.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2024-02-09T00:00:00

Updated: 2024-08-02T20:45:41.253Z

Reserved: 2023-10-23T00:00:00

Link: CVE-2023-46350

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2024-02-09T08:15:08.253

Modified: 2024-11-21T08:28:20.590

Link: CVE-2023-46350

cve-icon Redhat

No data.