PrestaShop 'possearchproducts' <= 1.7 - SQL Injection
Short Info
Level
Critical
Single Scan
Single Scan
Can be used by
Asset Owner
Estimated Time
10 seconds
Time Interval
23 days 1 hour
Scan only one
Domain, Subdomain, IPv4
Toolbox
-
In the module "Search Products" (possearchproducts) from PosThemes for PrestaShop, a guest can perform SQL injection in affected versions.
References: