Critical severity9.8NVD Advisory· Published Mar 8, 2024· Updated Jun 17, 2026
CVE-2024-25845
CVE-2024-25845
Description
In the module "CD Custom Fields 4 Orders" (cdcustomfields4orders) <= 1.0.0 from Cleanpresta.com for PrestaShop, a guest can perform SQL injection in affected versions.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:cleanpresta:cd_custom_fields_4_orders:*:*:*:*:*:prestashop:*:*Range: <=1.0.0
<=1.0.0+ 1 more
- (no CPE)range: <=1.0.0
- (no CPE)
Patches
Vulnerability mechanics
References
2- security.friendsofpresta.org/modules/2024/03/05/cdcustomfields4orders.htmlnvdPatchThird Party Advisory
- www.cleanpresta.comnvdBroken Link
News mentions
0No linked articles in our index yet.