PrestaShop Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability - CVE-2023-30151 - Vulnerability Database

PrestaShop Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability - CVE-2023-30151

High
Reference: CVE-2023-30151
Title: PrestaShop Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability
Overview:

A SQL injection vulnerability in the Boxtal (envoimoinscher) module for PrestaShop after version 3.1.10 allows remote authenticated users to execute arbitrary SQL commands via the key GET parameter.