Description
In PrestaShop from version 1.5.3.0 and before version 1.7.6.6, there is a stored XSS when using the name of a quick access item. The problem is fixed in 1.7.6.6.
Remediation
References
Related Vulnerabilities
WordPress Plugin Adsense Extreme 'adsensextreme[lang]' Parameter Remote File Include (1.0.3)
Apache Tomcat Other Vulnerability (CVE-2001-0590)
Coppermine Cross-site Scripting (XSS) Vulnerability (CVE-2015-3921)
WordPress Plugin WooCommerce Product Table Lite Cross-Site Scripting (2.3.0)
WordPress Plugin Welcart e-Commerce PHP Object Injection (1.9.35)