CVE-2024-25846
27.02.2024, 17:15
In the module "Product Catalog (CSV, Excel) Import" (simpleimportproduct) <= 6.7.0 from MyPrestaModules for PrestaShop, a guest can upload files with extensions .php.Enginsight
Vendor | Product | Version |
---|---|---|
simpleimportproduct_project | simpleimportproduct | 𝑥 ≤ 6.7.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References