CVE Wiki Pixee · CVE intelligence
← All CVEs

CVE-2023-45379

Critical · CVSS 9.8

posrotatorimg (Rotator Img) PrestaShop module by PosThemes — SQL Injection (unauthenticated/guest)

CVSS
9.8
nvd
EPSS
KEV
No
Class
other
CWE-89

Description

In the module "Rotator Img" (posrotatorimg) in versions at least up to 1.1 from PosThemes for PrestaShop, a guest can perform SQL injection.

Search profile — drives PoC discovery

Symbols posrotatorimgposrotatorimg.phpPosThemesRotator Imgid_rotatorid_img
Keywords CVE-2023-45379posrotatorimgPrestaShop SQL injectionRotator Img SQLiPosThemes PrestaShopposrotatorimg PoCposrotatorimg exploitFriends of Presta CVE-2023-45379
Versions: up to 1.1

References

Status: enriched · ingested 2026-07-05T06:00:39.000Z · profiled 2026-07-05T18:30:39.000Z