CVE-2020-15102

MEDIUM

PrestaShop Dashboard Productions <2.1.0 - Privilege Escalation

Title source: llm
STIX 2.1

Description

In PrestaShop Dashboard Productions before version 2.1.0, there is improper authorization which enables an attacker to change the configuration. The problem is fixed in 2.1.0.

Scores

CVSS v3 6.5
EPSS 0.0015
EPSS Percentile 35.8%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N

Details

CWE
CWE-284 CWE-862
Status published
Products (1)
prestashop/dashboard_products < 2.1.0
Published Jul 21, 2020
Tracked Since Feb 18, 2026