v1.6-v1.7 Warning!!! Vulnerability found in old versions of PrestaShop blog modules

PutinXuylo

Member
XNullUser
Joined
Nov 8, 2024
Messages
60
Reaction score
2
Points
8
Location
Boyarka
NullCash
83
Hello everyone

Unfortunately, we see thousands of sites around the world - which have already been hacked due to outdated core and modules

Chinese and Russians steal banking data and any forms or clicks from your site...

Potential code targets:
User activity tracking:
- The code tracks changes in form fields (input, select) and buttons, as well as clicks on links.
- These actions are recorded in sessionStorage or sent to the server.
- Monitoring interactions with embedded iframes:
The code tries to track user actions even in iframe content.
- Sending collected data to the server:
- Interaction data is stored as parameters and sent via fetch to the softbylinux.com server

Yes, updating the kernel to Prestashop 8.2.1 and blog modules - helps to close all site vulnerabilities

or block completely on your servers: China, Iran, Venezuela, and you can also block the whole rusia country - there is nothing civilized there anymore

Details for those who want to understand:
 
Top