ZeroHour

CVE-2020-21967

PoC ×2
CVSS 3.1
4.8 medium
EPSS
<1%p50
Published
()
Modified
Description

File upload vulnerability in the Catalog feature in Prestashop 1.7.6.7 allows remote attackers to run arbitrary code via the add new file page.

Vendors
prestashop
Products
prestashop
Ecosystems
E-commerce
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.