High severity7.8NVD Advisory· Published Dec 28, 2023· Updated Jun 17, 2026
CVE-2023-46989
CVE-2023-46989
Description
SQL Injection vulnerability in the Innovadeluxe Quick Order module for PrestaShop before v.1.4.0, allows local attackers to execute arbitrary code via the getProducts() function in the productlist.php file.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Range: <1.4.0
- Innovadeluxe/Quick Order moduledescription
Patches
Vulnerability mechanics
References
1- security.friendsofpresta.org/modules/2023/12/12/idxquickorder.htmlnvdPatchThird Party Advisory
News mentions
0No linked articles in our index yet.