cb
cvebase
.
~
/
products
/
prestahome
/
blog
Search CVEs, products, detections…
⌘K
pipeline live
Digest
Docs
Home
/
Products
/
prestahome
/
Prestahome Blog
Prestahome Blog vulnerabilities
1 known vulnerability affecting
prestahome/blog
.
Track
Version
All versions
Total CVEs
1
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
HIGH
1
Vulnerabilities
Sort
Most important
Highest Priority
Highest EPSS
Highest CVSS
Newest
Oldest
Page 1 of 1
CVE-2021-36748
P2
HIGH
CVSS 7.5
PoC
fixed in 1.7.8
2021-08-20
CVE-2021-36748 [HIGH] CWE-89 CVE-2021-36748: A SQL Injection issue in the list controller of the Prestahome Blog (aka ph_simpleblog) module befor A SQL Injection issue in the list controller of the Prestahome Blog (aka ph_simpleblog) module before 1.7.8 for Prestashop allows a remote attacker to extract data from the database via the sb_category parameter.
nvd
Prestahome Blog vulnerabilities | cvebase