Lucene search

K
osvGoogleOSV:GHSA-5V44-7647-XFW9
HistoryJan 20, 2021 - 9:33 p.m.

Blind SQL injection in PrestaShop productcomments module

2021-01-2021:33:53
Google
osv.dev
20
blind sql injection
prestashop
productcomments
impact
patches
mysql service

EPSS

0.019

Percentile

88.5%

Impact

An attacker can use a Blind SQL injection to retrieve data or stop the MySQL service.

Patches

The problem is fixed in 4.2.1