Description
PrestaShop from version 1.7.5.0 and before version 1.7.6.8 is vulnerable to a blind SQL Injection attack in the Catalog Product edition page with location parameter. The problem is fixed in 1.7.6.8
Remediation
References
Related Vulnerabilities
WordPress Plugin RentPress Cross-Site Scripting (6.6.4)
Moodle Permissions, Privileges, and Access Controls Vulnerability (CVE-2009-4301)
Ruby on Rails Improper Input Validation Vulnerability (CVE-2013-1856)
WordPress Plugin iPanorama 360 WordPress Virtual Tour Builder Cross-Site Scripting (1.6.21)
WordPress Plugin Waitlist Woocommerce (Back in stock notifier) Cross-Site Request Forgery (2.5.1)