CVE-2024-28393
EUVD-2024-2549125.03.2024, 14:15
SQL injection vulnerability in scalapay v.1.2.41 and before allows a remote attacker to escalate privileges via the ScalapayReturnModuleFrontController::postProcess() method.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| scalapay | scalapay | 𝑥 < 1.2.42 |
𝑥
= Vulnerable software versions
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| prestashop | scalapay | 𝑥 ≤ 1.2.41 | ADP |
References