Description
In PrestaShop from version 1.5.0.0 and before 1.7.6.6, there is information exposure in the upload directory. The problem is fixed in version 1.7.6.6. A possible workaround is to add an empty index.php file in the upload directory.
Remediation
References
Related Vulnerabilities
WordPress Plugin Rating-Widget:Star Review System Cross-Site Scripting (2.8.8)
WordPress Plugin Malware Scanner Privilege Escalation (4.7.2)
WordPress Plugin WP Maintenance Mode Multiple Vulnerabilities (2.0.3)
MySQL CVE-2023-22007 Vulnerability (CVE-2023-22007)
Moodle Server-Side Request Forgery (SSRF) Vulnerability (CVE-2023-35133)