Description
PrestaShop 1.5.5 allows remote authenticated attackers to execute arbitrary code by uploading a crafted profile and then accessing it in the module/ directory.
Remediation
References
Related Vulnerabilities
WordPress Plugin Kento Post View Counter Multiple Vulnerabilities (2.8)
Plone CMS Resource Management Errors Vulnerability (CVE-2012-5506)
WordPress Plugin Backup & Restore Dropbox Multiple Vulnerabilities (1.4.7.5)
WordPress Plugin Maps Widget for Google Maps-Google Maps Builder Open Redirect (4.0)
Oracle Database Server CVE-2012-0534 Vulnerability (CVE-2012-0534)