PrestaShop 'possearchproducts' <= 1.7 - SQL Injection

Short Info


Level

Critical

Single Scan

Single Scan

Can be used by

Asset Owner

Estimated Time

10 seconds

Time Interval

23 days 1 hour

Scan only one

Domain, Subdomain, IPv4

Toolbox

-

In the module "Search Products" (possearchproducts) from PosThemes for PrestaShop, a guest can perform SQL injection in affected versions.


References:
Get started to protecting your digital assets