CVE-2024-24308
09.02.2024, 08:15
SQL Injection vulnerability in Boostmyshop (boostmyshopagent) module for Prestashop versions 1.1.9 and before, allows remote attackers to escalate privileges and obtain sensitive information via changeOrderCarrier.php, relayPoint.php, and shippingConfirmation.php.
Vendor | Product | Version |
---|---|---|
boostmyshop | boostmyshop | 𝑥 < 1.1.10 |
𝑥
= Vulnerable software versions