PrestaShop

PrestaShop e-Commerce Solution was built to take advantage of essential Web 2.0 innovations such as dynamic AJAX-powered features and next-generation ergonomy. PrestaShop guides users through your product catalog intelligently and effortlessly turning intrigued visitors into paying customers.

Severity Summary:

Critical: 23 High: 14 Medium: 49
Reference
Title
Severity
PrestaShop Improper Limitation of a Pathname to a Restricted Directory (Path Traversal) Vulnerability
High
PrestaShop Cross-Site Request Forgery (CSRF) Vulnerability
High
PrestaShop Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability
High
PrestaShop Unrestricted Upload of File with Dangerous Type Vulnerability
High
PrestaShop Improper Neutralization of Formula Elements in a CSV File Vulnerability
High
PrestaShop Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability
High
PrestaShop Authorization Bypass Through User-Controlled Key Vulnerability
High
PrestaShop Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Medium
PrestaShop Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Medium
PrestaShop Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Medium
PrestaShop Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Medium
PrestaShop Exposure of Sensitive Information to an Unauthorized Actor Vulnerability
Medium
PrestaShop Exposure of Sensitive Information to an Unauthorized Actor Vulnerability
Medium
PrestaShop Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability
Medium
PrestaShop Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Medium
PrestaShop Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Medium
PrestaShop Improper Privilege Management Vulnerability
Medium
PrestaShop Improper Privilege Management Vulnerability
Medium
PrestaShop Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Medium
PrestaShop Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Medium
PrestaShop Improper Limitation of a Pathname to a Restricted Directory (Path Traversal) Vulnerability
Medium
PrestaShop Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Medium
PrestaShop Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Medium
PrestaShop Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Medium
PrestaShop Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Medium
PrestaShop Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Medium
PrestaShop Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Medium
PrestaShop Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Medium
PrestaShop Exposure of Sensitive Information to an Unauthorized Actor Vulnerability
Medium
PrestaShop Exposure of Sensitive Information to an Unauthorized Actor Vulnerability
Medium