Vulnerabilities
Vulnerable Software
In the module "Product Catalog (CSV, Excel) Import" (simpleimportproduct) <= 6.7.0 from MyPrestaModules for PrestaShop, a guest can upload files with extensions .php.
CVSS Score
9.1
EPSS Score
0.002
Published
2024-02-27
SimpleImportProduct Prestashop Module v6.2.9 was discovered to contain a SQL injection vulnerability via the key parameter at send.php.
CVSS Score
9.8
EPSS Score
0.002
Published
2023-09-20
MyPrestaModules Prestashop Module v6.2.9 and UpdateProducts Prestashop Module v3.6.9 were discovered to contain a PHPInfo information disclosure vulnerability via send.php.
CVSS Score
7.5
EPSS Score
0.818
Published
2023-09-20


Contact Us

Shodan ® - All rights reserved