SQL injection - Code In prestashop/prestashop
Description
SQL injection in prestashop/prestashop
Impact
Blind SQLi using Search filters with orderBy and sortOrder parameters
Patches
The problem is fixed in 1.7.8.2
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Package | Affected version | Patched versions |
|---|---|---|---|
packagist | 1.7.8.2 |
Aliases
1. 2. 3. 4. 5.
References
1. 2. 3. 4. 5.