Vulnerability CVE-2024-24308


Published: 2024-02-09

Description:
SQL Injection vulnerability in Boostmyshop (boostmyshopagent) module for Prestashop versions 1.1.9 and before, allows remote attackers to escalate privileges and obtain sensitive information via changeOrderCarrier.php, relayPoint.php, and shippingConfirmation.php.

 References:
https://security.friendsofpresta.org/modules/2024/02/08/boostmyshopagent.html

Copyright 2026, cxsecurity.com

 

Back to Top