SQL Injection vulnerability in the Innovadeluxe Quick Order module for PrestaShop before v.1.4.0, allows local attackers to execute arbitrary code via the getProducts() function in the productlist.php file.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2023-12-28T00:00:00

Updated: 2024-09-12T18:44:14.839Z

Reserved: 2023-10-30T00:00:00

Link: CVE-2023-46989

cve-icon Vulnrichment

Updated: 2024-08-02T21:01:22.156Z

cve-icon NVD

Status : Modified

Published: 2023-12-28T06:15:44.227

Modified: 2024-11-21T08:29:35.957

Link: CVE-2023-46989

cve-icon Redhat

No data.