Vulnerabilities (CVE)

Filtered by vendor Boostmyshop Subscribe
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-24308 1 Boostmyshop 1 Boostmyshop 2024-08-19 N/A 9.8 CRITICAL
SQL Injection vulnerability in Boostmyshop (boostmyshopagent) module for Prestashop versions 1.1.9 and before, allows remote attackers to escalate privileges and obtain sensitive information via changeOrderCarrier.php, relayPoint.php, and shippingConfirmation.php.