Description
PrestaShop is an Open Source e-commerce web application. Versions of PrestaShop prior to 1.7.8.2 are vulnerable to blind SQL injection using search filters with `orderBy` and `sortOrder` parameters. The problem is fixed in version 1.7.8.2.
Remediation
References
Related Vulnerabilities
WordPress Plugin Social Sharing Toolkit Cross-Site Scripting (2.6)
Joomla! Core 3.9.x Cross-Site Scripting (3.9.0 - 3.9.20)
Grafana Insufficiently Protected Credentials Vulnerability (CVE-2019-15635)
WordPress Plugin WpPygments Multiple Cross-Site Scripting Vulnerabilities (0.3.2)
Apache Tomcat Improper Input Validation Vulnerability (CVE-2014-0095)