In the module "Generate barcode on invoice / delivery slip" (ecgeneratebarcode) from Ether Creation <= 1.2.0 for PrestaShop, a guest can perform SQL injection.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2024-02-23 22:15
Updated : 2025-05-08 13:50
NVD link : CVE-2024-24310
Mitre link : CVE-2024-24310
CVE.ORG link : CVE-2024-24310
JSON object : View
Products Affected
ethercreation
- generate_barcode_on_invoice_\/_delivery_slip
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
