Filtered by vendor Boostmyshop Subscriptions
Filtered by product Boostmyshop Subscriptions
Total 1 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2024-24308 1 Boostmyshop 1 Boostmyshop 2024-02-15 9.8 Critical
SQL Injection vulnerability in Boostmyshop (boostmyshopagent) module for Prestashop versions 1.1.9 and before, allows remote attackers to escalate privileges and obtain sensitive information via changeOrderCarrier.php, relayPoint.php, and shippingConfirmation.php.