CVE-2020-15082

HIGH

PrestaShop <1.7.6.6 - Info Disclosure

Title source: llm
STIX 2.1

Description

In PrestaShop from version 1.6.0.1 and before version 1.7.6.6, the dashboard allows rewriting all configuration variables. The problem is fixed in 1.7.6.6

Scores

CVSS v3 7.1
EPSS 0.0042
EPSS Percentile 62.1%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:L

Details

Status published
Products (1)
prestashop/prestashop 1.6.0.1 - 1.7.6.6
Published Jul 02, 2020
Tracked Since Feb 18, 2026