CVE-2020-12120
27.04.2020, 15:15
The Correos Express addon for PrestaShop 1.6 through 1.7 allows remote attackers to obtain sensitive information, such as a service's owner password that can be used to modify orders via SOAP. Attackers can also retrieve information about orders or buyers.Enginsight
Vendor | Product | Version |
---|---|---|
prestashop | correos_express | 1.6 ≤ 𝑥 ≤ 1.7 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References