ZeroHour

CVE-2018-13784

PoC ×2
CVSS 3.0
9.1 critical
EPSS
16%p97
Published
()
Modified
Description

PrestaShop before 1.6.1.20 and 1.7.x before 1.7.3.4 mishandles cookie encryption in Cookie.php, Rinjdael.php, and Blowfish.php.

Vendors
prestashop
Products
prestashop
Ecosystems
E-commerce
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N

In the news

No ingested article mentions this CVE yet.