An Unrestricted Upload of File with Dangerous Type vulnerability in the Ajaxmanager File and Database explorer (ajaxmanager) module for PrestaShop through 2.3.0, allows remote attackers to upload dangerous files without restrictions.
References
Link | Resource |
---|---|
https://security.friendsofpresta.org/module/2023/07/28/ajaxmanager.html | Vendor Advisory |
Configurations
History
04 Aug 2023, 17:48
Type | Values Removed | Values Added |
---|---|---|
First Time |
Ajaxmanager Project ajaxmanager
Ajaxmanager Project |
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.8 |
CPE | cpe:2.3:a:ajaxmanager_project:ajaxmanager:*:*:*:*:*:prestashop:*:* | |
CWE | CWE-434 | |
References | (MISC) https://security.friendsofpresta.org/module/2023/07/28/ajaxmanager.html - Vendor Advisory |
01 Aug 2023, 17:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-08-01 17:15
Updated : 2023-08-04 17:48
NVD link : CVE-2023-33493
Mitre link : CVE-2023-33493
JSON object : View
Products Affected
ajaxmanager_project
- ajaxmanager
CWE
CWE-434
Unrestricted Upload of File with Dangerous Type