ZeroHour

CVE-2024-24302

CVSS 3.1
9.8 critical
EPSS
<1%p59
Published
()
Modified
Description

An issue was discovered in Tunis Soft "Product Designer" (productdesigner) module for PrestaShop before version 1.178.36, allows remote attackers to execute arbitrary code, escalate privileges, and obtain sensitive information via the postProcess() method.

Vendors
prestalife
Products
product designer
Ecosystems
E-commerce
Weakness
CWE-502
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.