CVE-2023-47308 | Active Design Newsletter Popup PRO with Voucher Code Module up to 2.6.0 on PrestaShop checkEmailSubscription sql injection (EUVD-2023-51435)
A vulnerability categorized as critical has been discovered in Active Design Newsletter Popup PRO with Voucher Code Module up to 2.6.0 on PrestaShop. The impacted element is the function NewsletterpopsendVerificationModuleFrontController::checkEmailSubscription. Executing a manipulation can lead to sql injection.
This vulnerability appears as CVE-2023-47308. The attacker needs to be present on the local network. There is no available exploit.
It is advisable to upgrade the affected component.