Vulnerability Details CVE-2023-46914
SQL Injection vulnerability in RM bookingcalendar module for PrestaShop versions 2.7.9 and before, allows remote attackers to execute arbitrary code, escalate privileges, and obtain sensitive information via ics_export.php.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.014
EPSS Ranking 79.4%
CVSS Severity
CVSS v3 Score 9.8
Products affected by CVE-2023-46914
-
cpe:2.3:a:bookingcalendar_project:bookingcalendar:-
-
cpe:2.3:a:bookingcalendar_project:bookingcalendar:2.7.9