Security Advisory

CVE-2012-2517

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2020-02-11 19:12:09
Last updated 2024-08-06 19:34:25
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Cross-site scripting (XSS) vulnerability in PrestaShop before 1.4.9 allows remote attackers to inject arbitrary web script or HTML via the index of the product[] parameter to ajax.php.