cve/2024/CVE-2024-34989.md
2024-06-22 09:37:59 +00:00

677 B

CVE-2024-34989

Description

In the module RSI PDF/HTML catalog evolution (prestapdf) <= 7.0.0 from RSI for PrestaShop, a guest can perform SQL injection via `PrestaPDFProductListModuleFrontController::queryDb().'

POC

Reference

Github

No PoCs found on GitHub currently.