Ebewe City Autocomplete 1.8.12 for Prestashop

CPE Details

Ebewe City Autocomplete 1.8.12 for Prestashop
1.8.12
2023-10-26
11h51 +00:00
2023-10-26
11h51 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:ebewe:city_autocomplete:1.8.12:*:*:*:*:prestashop:*:*

Informations

Vendor

ebewe

Product

city_autocomplete

Version

1.8.12

Target Software

prestashop

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2023-30149 2023-06-02 00h00 +00:00 SQL injection vulnerability in the City Autocomplete (cityautocomplete) module from ebewe.net for PrestaShop, prior to version 1.8.12 (for PrestaShop version 1.5/1.6) or prior to 2.0.3 (for PrestaShop version 1.7), allows remote attackers to execute arbitrary SQL commands via the type, input_name. or q parameter in the autocompletion.php front controller.
9.8
Critical