Vulnerabilities
Vulnerable Software
PrestaShop is an Open Source e-commerce web application. Versions of PrestaShop prior to 1.7.8.2 are vulnerable to blind SQL injection using search filters with `orderBy` and `sortOrder` parameters. The problem is fixed in version 1.7.8.2.
CVSS Score
7.5
EPSS Score
0.13
Published
2021-12-07
PrestaShop is a fully scalable open source e-commerce solution. In PrestaShop before version 1.7.7.3, an attacker can inject HTML when the Grid Column Type DataColumn is badly used. The problem is fixed in 1.7.7.3
CVSS Score
5.4
EPSS Score
0.003
Published
2021-03-30


Contact Us

Shodan ® - All rights reserved