First published: Mon Oct 02 2023(Updated: )
Presto Changeo testsitecreator up to v1.1.1 was discovered to contain a SQL injection vulnerability via the component disable_json.php.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Presto-changeo Testsitecreator | <=1.1.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-43980 is a SQL injection vulnerability found in Presto Changeo Testsitecreator up to version 1.1.1.
CVE-2023-43980 has a severity rating of 9.8, which is considered critical.
Presto Changeo Testsitecreator up to version 1.1.1 is affected by CVE-2023-43980.
CVE-2023-43980 is associated with CWE-89, which is a vulnerability related to SQL injection.
You can find more information about CVE-2023-43980 at the following references: [Link 1](https://security.friendsofpresta.org/modules/2023/09/28/testsitecreator-89.html), [Link 2](https://www.presto-changeo.com/prestashop/home/158-test-site-creator.html)