CVE-2022-36408

PrestaShop 1.6.0.10 through 1.7.x before 1.7.8.7 allows remote attackers to execute arbitrary code, aka a "previously unknown vulnerability chain" related to SQL injection and MySQL Smarty cache storage injection, as exploited in the wild in July 2022.
CVSS

No CVSS.

Configurations

No configuration.

Information

Published : 2022-07-22 22:15

Updated : 2022-07-26 14:15


NVD link : CVE-2022-36408

Mitre link : CVE-2022-36408


JSON object : View

Products Affected

No product.

CWE

No CWE.