← Back

Manufacturers (brands) Images Block

manufacturers_(brands)_images_block

Vendor: Mypresta • 1 CVE

CVEs (1)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Mypresta
1Manufacturers (brands) Images Block
Jun 20, 2025
Jan 19, 2024
N/A· v4
9.8 CRITICAL· v3
N/A· v2
In the module mib < 1.6.1 from MyPresta.eu for PrestaShop, a guest can perform SQL injection. The methods `mib::getManufacturersByCategory()` has sensitive SQL calls that can be executed with a trivial http call and expl...Show more
In the module mib < 1.6.1 from MyPresta.eu for PrestaShop, a guest can perform SQL injection. The methods `mib::getManufacturersByCategory()` has sensitive SQL calls that can be executed with a trivial http call and exploited to forge a SQL injection.Show less