SunnyToo stblogsearch up to v1.0.0 was discovered to contain a SQL injection vulnerability via the StBlogSearchClass::prepareSearch component.
References
Link | Resource |
---|---|
https://security.friendsofpresta.org/modules/2024/01/18/stblogsearch.html | Patch Third Party Advisory |
https://www.sunnytoo.com/product/panda-creative-responsive-prestashop-theme | Product |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2024-01-19T00:00:00
Updated: 2024-01-19T13:24:52.817734
Reserved: 2023-09-25T00:00:00
Link: CVE-2023-43985
JSON object: View
NVD Information
Status : Analyzed
Published: 2024-01-19T14:15:12.317
Modified: 2024-01-25T20:07:56.693
Link: CVE-2023-43985
JSON object: View
Redhat Information
No data.
CWE