CVEs Blog | G5 Cyber Security

CVE-2020-15161 – In PrestaShop from version 1.6.0.4 and before version 1.7.6.8 an attacker

In PrestaShop from version 1.6.0.4 and before version 1.7.6.8 an attacker is able to inject javascript while using the contact form. The problem is fixed in 1.7.6.8

 

Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-15161

Reference (s):

Exit mobile version