Security Advisory

CVE-2020-26248

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2020-12-03 20:55:13
Last updated 2024-08-04 15:56:04
Assigner GitHub_M
CVSS score 6.8
State PUBLISHED

Description

In the PrestaShop module "productcomments" before version 4.2.1, an attacker can use a Blind SQL injection to retrieve data or stop the MySQL service. The problem is fixed in 4.2.1 of the module.