CVE-2023-39648
03.10.2023, 22:15
Improper neutralization of SQL parameter in Theme Volty CMS Testimonial module for PrestaShop. In the module Theme Volty CMS Testimonial (tvcmstestimonial) up to version 4.0.1 from Theme Volty for PrestaShop, a guest can perform SQL injection in affected versions.
Vendor | Product | Version |
---|---|---|
themevolty | theme_volty_cms_testimonial | 𝑥 ≤ 4.0.1 |
𝑥
= Vulnerable software versions