Description
PrestaShop is a fully scalable open source e-commerce solution. In PrestaShop before version 1.7.7.3, an attacker can inject HTML when the Grid Column Type DataColumn is badly used. The problem is fixed in 1.7.7.3
Remediation
References
Related Vulnerabilities
WordPress Plugin Stylish Price List Security Bypass (6.8.14)
WordPress Plugin Forms-Form builder and Contact form Multiple Unspecified Vulnerabilities (1.4.7)
PHP Resource Management Errors Vulnerability (CVE-2014-3538)
WordPress Plugin Dean's FCKEditor with pwwang's code Arbitrary File Upload (1.0.0)