1 results (0.008 seconds)

CVSS: 7.8EPSS: 0%CPEs: 1EXPL: 0

30 May 2023 — Prestashop salesbooster <= 1.10.4 is vulnerable to Incorrect Access Control via modules/salesbooster/downloads/download.php. • https://friends-of-presta.github.io/security-advisories/modules/2023/05/22/salesbooster.html • CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') •