CVE-2023-39651
03.10.2023, 22:15
Improper neutralization of SQL parameter in Theme Volty CMS BrandList module for PrestaShop In the module Theme Volty CMS BrandList (tvcmsbrandlist) up to version 4.0.1 from Theme Volty for PrestaShop, a guest can perform SQL injection in affected versions.
Vendor | Product | Version |
---|---|---|
themevolty | theme_volty_cms_brandlist | 𝑥 ≤ 4.0.1 |
𝑥
= Vulnerable software versions