CVE-2023-39648
EUVD-2023-4335503.10.2023, 22:15
Improper neutralization of SQL parameter in Theme Volty CMS Testimonial module for PrestaShop. In the module “Theme Volty CMS Testimonial” (tvcmstestimonial) up to version 4.0.1 from Theme Volty for PrestaShop, a guest can perform SQL injection in affected versions.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| themevolty | theme_volty_cms_testimonial | 𝑥 ≤ 4.0.1 |
𝑥
= Vulnerable software versions