Description
Cross-site scripting (XSS) vulnerability in PrestaShop before 1.4.9 allows remote attackers to inject arbitrary web script or HTML via the index of the product[] parameter to ajax.php.
Remediation
References
Related Vulnerabilities
WordPress Plugin Wow Forms-create any form with custom style SQL Injection (3.1.3)
CubeCart Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2023-38130)
Moodle Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2011-3757)
WordPress Plugin Category and Page Icons Multiple Vulnerabilities (0.9.1)
WordPress Plugin BSK PDF Manager Multiple Cross-Site Scripting Vulnerabilities (1.3)