mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-30 00:49:28 +02:00
729 B
729 B
CVE-2013-4791
Description
PrestaShop before 1.4.11 allows Logistician, translators and other low level profiles/accounts to inject a persistent XSS vector on TinyMCE.
POC
Reference
- http://davidsopaslabs.blogspot.com/2013/07/prestashop-persistent-xss-and-csrf.html
- http://davidsopaslabs.blogspot.com/2013/07/prestashop-persistent-xss-and-csrf.html
Github
No PoCs found on GitHub currently.