Vulnerabilidades em Prestashop

74 resultados
Análise Vexday

PrestaShop apresenta 3 vulnerabilidades registradas na base do Vexday, todas relacionadas a injeção de código (CWE-79), mas nenhuma está sob exploração ativa confirmada e todas têm histórico anterior a 90 dias. O risco operacional é baixo no contexto atual, embora a persistência de falhas de validação de entrada permaneça como vetor de preocupação para implementações desatualizadas.

CVE-2023-39525MEDIUMPrestaShop vulnerable to path traversalEPSS 0.9%CVE-2023-39530MEDIUMPrestaShop vulnerable to file deletion via CustomerMessageEPSS 0.9%CVE-2023-30545HIGHPrestaShop arbitrary file read vulnerabilityEPSS 0.9%CVE-2020-5250HIGHPossible information disclosure in PrestaShopEPSS 0.9%CVE-2020-5272MEDIUMReflected XSS on Search page of PrestaShopEPSS 0.8%CVE-2020-5270MEDIUMOpen redirection when using back parameter of PrestaShopEPSS 0.8%CVE-2020-15162MEDIUMStored XSS in PrestaShopEPSS 0.8%CVE-2020-5279MEDIUMImproper Access Control for certain legacy controller in PrestaShopEPSS 0.8%CVE-2020-5278MEDIUMReflected XSS on Exception page of PrestaShopEPSS 0.8%CVE-2020-5271MEDIUMReflected XSS with dashboard calendar of PrestaShopEPSS 0.8%CVE-2020-5269MEDIUMReflected XSS on AdminFeatures page of PrestaShopEPSS 0.8%CVE-2020-5285MEDIUMReflected XSS with back parameter in PrestaShopEPSS 0.8%CVE-2020-5276MEDIUMReflected XSS on AdminCarts page of PrestaShopEPSS 0.8%CVE-2021-21418MEDIUMPotential XSS injection in the newsletter conditions fieldEPSS 0.8%CVE-2023-47109MEDIUMPrestaShop blockreassurance BO User can remove any file from server when adding a and deleting a blockEPSS 0.8%CVE-2023-39528MEDIUMPrestaShop vulnerable to file reading through path traversalEPSS 0.8%CVE-2020-5265MEDIUMReflected XSS on AdminAttributesGroups page of PrestaShopEPSS 0.7%CVE-2020-5264MEDIUMReflected XSS in security compromised page of PrestaShopEPSS 0.7%CVE-2020-15102MEDIUMImproper access control on dashboard form in PrestaShopEPSS 0.7%CVE-2023-39529MEDIUMPrestaShop vulnerable to file deletion via attachment APIEPSS 0.7%