CVE-2023-40921: SQL Injection
Published Dec 13, 2023
·Updated
SQL Injection vulnerability in functions/pointlist.php in Common Services soliberte before v4.3.03 allows attackers to obtain sensitive information via the lat and lng parameters.
Affected Software
1 affected component
Common-Services Soliberte Prestashop>=4.0.0<4.3.03
Remediation
Event History
Dec 13, 2023
CVE Published
12:00 AM
Data Sourced
12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2023-40921?
CVE-2023-40921 is classified as a high severity SQL Injection vulnerability.
2
How do I fix CVE-2023-40921?
To fix CVE-2023-40921, upgrade Common Services soliberte to version 4.3.03 or later.
3
What systems are affected by CVE-2023-40921?
CVE-2023-40921 affects Common Services soliberte versions prior to 4.3.03.
4
What kind of data can be exposed due to CVE-2023-40921?
CVE-2023-40921 can allow attackers to obtain sensitive information via the lat and lng parameters.
5
Is there a workaround for CVE-2023-40921?
There are currently no known workarounds for CVE-2023-40921 other than upgrading to a secure version.