CVE | CVE-2023-33278 |
CVE Title | |
Published Date | 2023-05-25T20:15Z |
Modified Date | 2023-05-26T12:43Z |
Description | In the Store Commander scexportcustomers module for PrestaShop through 3.6.1, sensitive SQL calls can be executed with a trivial HTTP request and exploited to forge a blind SQL injection. |
References | |
By clicking these links you will leave this website. We do not endorse and will not be held accountable for any activity on external sites. | |
Reference URL | https://friends-of-presta.github.io/security-advisories/modules/2023/05/25/scexportcustomers.html |
Reference Description | MISC https://friends-of-presta.github.io/security-advisories/modules/2023/05/25/scexportcustomers.html |
Reference URL | https://www.storecommander.com/en/addons/480-customer-export-pro.html |
Reference Description | MISC https://www.storecommander.com/en/addons/480-customer-export-pro.html |
Sources | NIST MITRE |
Note
- No CVSS data for this CVE