CVE-2023-45256: SQL Injection
Multiple SQL injection vulnerabilities in the EuroInformation MoneticoPaiement module before 1.1.1 for PrestaShop allow remote attackers to execute arbitrary SQL commands via the TPE, societe, MAC, reference, or aliascb parameter to transaction.php, validation.php, or callback.php.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-45256?
CVE-2023-45256 has been classified as a high severity vulnerability due to the potential for remote SQL injection attacks.
How do I fix CVE-2023-45256?
To mitigate CVE-2023-45256, upgrade the EuroInformation MoneticoPaiement module to version 1.1.1 or later.
Which components are affected by CVE-2023-45256?
CVE-2023-45256 affects the EuroInformation MoneticoPaiement module prior to version 1.1.1 in PrestaShop installations.
What type of attack is possible with CVE-2023-45256?
CVE-2023-45256 allows attackers to execute arbitrary SQL commands via user-supplied input on certain parameters.
Where can I find more information about CVE-2023-45256?
For further details on CVE-2023-45256, consult the official security advisories or your software vendor's documentation.