Description
Cross-site scripting (XSS) vulnerability in redirect.php in the Socolissimo module (modules/socolissimo/) in PrestaShop before 1.4.7.2 allows remote attackers to inject arbitrary web script or HTML via vectors related to "parameter names and values."
Remediation
References
Related Vulnerabilities
WordPress Plugin Search Exclude Security Bypass (1.2.2)
OpenSSL NULL Pointer Dereference Vulnerability (CVE-2006-4343)
WordPress Plugin Checklist Cross-Site Scripting (1.1.5)
WordPress Plugin File Manager Multiple Cross-Site Request Forgery Vulnerabilities (5.0)
ATutor Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2019-12170)