Description
In PrestaShop between versions 1.7.1.0 and 1.7.6.5, there is a reflected XSS on AdminCarts page with `cartBox` parameter The problem is fixed in 1.7.6.5
Remediation
References
Related Vulnerabilities
WordPress Plugin WP Photo Album Plus Cross-Site Scripting (6.1.2)
PrestaShop Files or Directories Accessible to External Parties Vulnerability (CVE-2020-5250)
WebLogic Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-10334)
Oracle Application Server CVE-2007-0280 Vulnerability (CVE-2007-0280)