Vulnerabilities > Common Services

DATE CVE VULNERABILITY TITLE RISK
2023-12-14 CVE-2023-40921 SQL Injection vulnerability in Common-Services Soliberte 4.0.0
SQL Injection vulnerability in functions/point_list.php in Common Services soliberte before v4.3.03 allows attackers to obtain sensitive information via the lat and lng parameters.
network
low complexity
common-services CWE-89
critical
9.8
2023-11-17 CVE-2023-45382 Path Traversal vulnerability in Common-Services Sonice Retour 2.1.0
In the module "SoNice Retour" (sonice_retour) up to version 2.1.0 from Common-Services for PrestaShop, a guest can download personal information without restriction by performing a path traversal attack.
network
low complexity
common-services CWE-22
7.5
2023-10-18 CVE-2023-45383 Path Traversal vulnerability in Common-Services Sonice Etiquetage 2.5.9
In the module "SoNice etiquetage" (sonice_etiquetage) up to version 2.5.9 from Common-Services for PrestaShop, a guest can download personal information without restriction by performing a path traversal attack.
network
low complexity
common-services CWE-22
7.5