smartdatasoft/smartblog

smartdatasoft/smartblog

Releases3
Frequency1 year 6 months
Last Release
Stars96
SmartBlog is one of the most powerful PrestaShop blog module .Prestashop 1.6 & 1.7 Smart Blog Module

CVE History

CVEPublishedCVSS v3CVSS v2
8.2 HIGH

SmartBlog 2.0.1 contains a blind SQL injection vulnerability in the 'id_post' parameter of the details controller that allows attackers to extract database information. Attackers can systematically test and retrieve database contents by injecting crafted SQL queries that compare character-by-character of database information.