Description
A SQL injection vulnerability in the Boxtal (envoimoinscher) module for PrestaShop, after version 3.1.10, allows remote authenticated users to execute arbitrary SQL commands via the `key` GET parameter.
Remediation
References
Related Vulnerabilities
Jenkins Resource Management Errors Vulnerability (CVE-2014-3661)
Liferay Portal Incorrect Default Permissions Vulnerability (CVE-2022-42130)
WordPress Plugin Google Doc Embedder SQL Injection (2.5.14)
WordPress Plugin Ultimate Appointment Booking & Scheduling Unspecified Vulnerability (1.1.10)
WordPress Plugin Private Only Multiple Vulnerabilities (3.5.1)