SQLi in ThemeVolty CMS Category Product module before v4.0.2 PrestaShop
CVE-2023-39647 Published on October 3, 2023

Improper neutralization of SQL parameter in Theme Volty CMS Category Product module for PrestaShop. In the module Theme Volty CMS Category Product (tvcmscategoryproduct) up to version 4.0.1 from Theme Volty for PrestaShop, a guest can perform SQL injection in affected versions.

NVD


Products Associated with CVE-2023-39647

stack.watch emails you whenever new vulnerabilities are published in Themevolty Theme Volty Cms Category Product or PrestaShop. Just hit a watch button to start following.

 
 

Exploit Probability

EPSS
0.07%
Percentile
20.52%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.