Описание
In PrestaShop Dashboard Productions before version 2.1.0, there is improper authorization which enables an attacker to change the configuration. The problem is fixed in 2.1.0.
Ссылки
- PatchThird Party Advisory
- Third Party Advisory
- PatchThird Party Advisory
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 2.1.0 (исключая)
cpe:2.3:a:prestashop:dashboard_products:*:*:*:*:*:*:*:*
EPSS
Процентиль: 36%
0.00154
Низкий
6.5 Medium
CVSS3
4 Medium
CVSS2
Дефекты
CWE-284
CWE-862
EPSS
Процентиль: 36%
0.00154
Низкий
6.5 Medium
CVSS3
4 Medium
CVSS2
Дефекты
CWE-284
CWE-862