Vulnerabilities (CVE)

Filtered by vendor Prestalife Subscribe
Filtered by product Product Designer
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-24302 1 Prestalife 1 Product Designer 2025-05-15 N/A N/A
An issue was discovered in Tunis Soft "Product Designer" (productdesigner) module for PrestaShop before version 1.178.36, allows remote attackers to execute arbitrary code, escalate privileges, and obtain sensitive information via the postProcess() method.
CVE-2024-24307 1 Prestalife 1 Product Designer 2025-05-15 N/A N/A
Path Traversal vulnerability in Tunis Soft "Product Designer" (productdesigner) module for PrestaShop before version 1.178.36, allows a remote attacker to escalate privileges and obtain sensitive information via the ajaxProcessCropImage() method.
CVE-2024-26469 1 Prestalife 1 Product Designer 2025-05-13 N/A N/A
Server-Side Request Forgery (SSRF) vulnerability in Tunis Soft "Product Designer" (productdesigner) module for PrestaShop before version 1.178.36, allows remote attackers to cause a denial of service (DoS) and escalate privileges via the url parameter in the postProcess() method.