CVE-2024-25843
EUVD-2024-2315027.02.2024, 17:15
In the module "Import/Update Bulk Product from any Csv/Excel File Pro" (ba_importer) up to version 1.1.28 from Buy Addons for PrestaShop, a guest can perform SQL injection in affected versions.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| prestashop | import\/update_bulk_product | 𝑥 < 1.1.29 |
𝑥
= Vulnerable software versions
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| communitydeveloper | import\/update_bulk_product_from_any_csv\/excel_file_pro | 𝑥 ≤ 1.1.28 | ADP |
References