Security Advisory

CVE-2023-27845

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2023-07-07 00:00:00
Last updated 2024-11-13 21:07:08
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

SQL injection vulnerability found in PrestaShop lekerawen_ocs before v.1.4.1 allow a remote attacker to gain privileges via the KerawenHelper::setCartOperationInfo, and KerawenHelper::resetCheckoutSessionData components.