Vulnerabilities > Myprestamodules > Exportproducts

DATE CVE VULNERABILITY TITLE RISK
2023-11-17 CVE-2023-45387 SQL Injection vulnerability in Myprestamodules Exportproducts 4.1.1/5.0.0
In the module "Product Catalog (CSV, Excel, XML) Export PRO" (exportproducts) in versions up to 5.0.0 from MyPrestaModules for PrestaShop, a guest can perform SQL injection via `exportProduct::_addDataToDb().`
network
low complexity
myprestamodules CWE-89
critical
9.8
2023-10-25 CVE-2023-46346 Path Traversal vulnerability in Myprestamodules Exportproducts 4.1.1
In the module "Product Catalog (CSV, Excel, XML) Export PRO" (exportproducts) in versions up to 4.1.1 from MyPrestaModules for PrestaShop, a guest can download personal information without restriction by performing a path traversal attack.
network
low complexity
myprestamodules CWE-22
7.5