Vulnerability CVE-2024-24303


Published: 2024-02-07

Description:
SQL Injection vulnerability in HiPresta "Gift Wrapping Pro" (hiadvancedgiftwrapping) module for PrestaShop before version 1.4.1, allows remote attackers to escalate privileges and obtain sensitive information via the HiAdvancedGiftWrappingGiftWrappingModuleFrontController::addGiftWrappingCartValue() method.

 References:
https://security.friendsofpresta.org/modules/2024/02/06/hiadvancedgiftwrapping.html

Copyright 2026, cxsecurity.com

 

Back to Top