CVE-2022-44727

Severity CVSS v4.0:
Pending analysis
Type:
CWE-89 SQL Injection
Publication date:
10/11/2022
Last modified:
01/05/2025

Description

The EU Cookie Law GDPR (Banner + Blocker) module before 2.1.3 for PrestaShop allows SQL Injection via a cookie ( lgcookieslaw or __lglaw ).

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:lineagrafica:eu_cookie_law_gdpr:*:*:*:*:*:prestashop:*:* 2.1.3 (excluding)