Description
In PrestaShop from version 1.5.0.0 and before version 1.7.6.6, the authentication system is malformed and an attacker is able to forge requests and execute admin commands. The problem is fixed in 1.7.6.6.
Remediation
References
Related Vulnerabilities
PrestaShop CVE-2024-34717 Vulnerability (CVE-2024-34717)
TYPO3 Improper Input Validation Vulnerability (CVE-2010-4068)
MySQL CVE-2018-3063 Vulnerability (CVE-2018-3063)
WordPress Plugin Chained Quiz Cross-Site Scripting (1.1.9)
Jenkins Use of Insufficiently Random Values Vulnerability (CVE-2020-2099)