First published: Tue Mar 14 2023(Updated: )
PrestaShop ws_productreviews < 3.6.2 is vulnerable to SQL Injection.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Prestashop Advanced Reviews | <3.6.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability with CVE-2023-25206 is an SQL Injection vulnerability in PrestaShop ws_productreviews version below 3.6.2.
The severity of the vulnerability with CVE-2023-25206 is high, with a severity score of 8.8.
The affected software for CVE-2023-25206 is PrestaShop ws_productreviews version below 3.6.2.
To fix the vulnerability with CVE-2023-25206, update PrestaShop ws_productreviews to version 3.6.2 or above.
The CWE category for CVE-2023-25206 is CWE-89 (Improper Neutralization of Special Elements used in an SQL Command).