SQL Injection vulnerability in HiPresta "Gift Wrapping Pro" (hiadvancedgiftwrapping) module for PrestaShop before version 1.4.1, allows remote attackers to escalate privileges and obtain sensitive information via the HiAdvancedGiftWrappingGiftWrappingModuleFrontController::addGiftWrappingCartValue() method.
Metrics
Affected Vendors & Products
References
History
Fri, 27 Feb 2026 05:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:hipresta:gift_wrapping_pro:1.4.1:*:*:*:*:prestashop:*:* | |
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published: 2024-02-07T00:00:00.000Z
Updated: 2024-08-22T19:06:04.443Z
Reserved: 2024-01-25T00:00:00.000Z
Link: CVE-2024-24303
Updated: 2024-08-01T23:19:52.121Z
Status : Modified
Published: 2024-02-07T09:15:15.780
Modified: 2024-11-21T08:59:07.837
Link: CVE-2024-24303
No data.