CVE-2020-9368
EUVD-2020-3018902.11.2020, 21:15
The Module Olea Gift On Order module through 5.0.8 for PrestaShop enables an unauthenticated user to read arbitrary files on the server via getfile.php?file=/.. directory traversal.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| oleacorner | olea_gift_on_order | 𝑥 ≤ 5.0.8 |
𝑥
= Vulnerable software versions