TROYANOSYVIRUS
Retour aux CVEs

CVE-2023-6921

CRITICAL
9.8

Description

Blind SQL Injection vulnerability in PrestaShow Google Integrator (PrestaShop addon) allows for data extraction and modification. This attack is possible via command insertion in one of the cookies.

Details CVE

Score CVSS v3.19.8
SeveriteCRITICAL
Vecteur CVSSCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Vecteur d'attaqueNETWORK
ComplexiteLOW
Privileges requisNONE
Interaction utilisateurNONE
Publie1/8/2024
Derniere modification11/21/2024
Sourcenvd
Observations honeypot0

Produits affectes

prestashow:google_integrator

Faiblesses (CWE)

CWE-89CWE-89

Correlations IOC

Aucune correlation enregistree

This product uses data from the NVD API but is not endorsed or certified by the NVD.