CVE-2024-34989

All FrameworksPrestaShopCWE-89CVE-2024-34989

CVE-2024-34989

State: PUBLISHED · Published: 2024-06-21 · Updated: 2024-08-02 · Assigner: mitre
Description
In the module RSI PDF/HTML catalog evolution (prestapdf) <= 7.0.0 from RSI for PrestaShop, a guest can perform SQL injection via `PrestaPDFProductListModuleFrontController::queryDb().'
CWE
Affected
CVSS
References
Source
cvelistV5-main/cves/2024/34xxx/CVE-2024-34989.json