CVE-2023-31672: SQL Injection
In the PrestaShop < 2.4.3 module "Length, weight or volume sell" (ailinear) there is a SQL injection vulnerability.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2023-31672?
The severity of CVE-2023-31672 is critical with a score of 9.8.
What is the affected software for CVE-2023-31672?
The affected software for CVE-2023-31672 is PrestaShop < 2.4.3.
How does the SQL injection vulnerability in PrestaShop < 2.4.3 module Length, weight or volume sell (ailinear) impact the system?
The SQL injection vulnerability in PrestaShop < 2.4.3 module Length, weight or volume sell (ailinear) allows an attacker to manipulate the database and potentially perform unauthorized actions.
Is there a fix available for CVE-2023-31672?
Yes, a fix is available for CVE-2023-31672. It is recommended to update PrestaShop to version 2.4.3 or later to mitigate the vulnerability.
Where can I find more information about CVE-2023-31672?
You can find more information about CVE-2023-31672 at the following link: [https://friends-of-presta.github.io/security-advisories/modules/2023/06/15/ailinear.html](https://friends-of-presta.github.io/security-advisories/modules/2023/06/15/ailinear.html).