CVEs Blog | G5 Cyber Security

CVE-2020-26248 – In the PrestaShop module “productcomments” before version 4.2.1, an attac

In the PrestaShop module “productcomments” before version 4.2.1, an attacker can use a Blind SQL injection to retrieve data or stop the MySQL service. The problem is fixed in 4.2.1 of the module.

 

Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-26248

Reference (s):

Exit mobile version