gist.github.com
https://gist.github.com/1047524396/25c45b61a6374e0fdaf720c9863c6bcd CVE-2024-36626
MEDIUM
Record summary
CVE-2024-36626 has a selected CVSS score of 5.3 (medium).
Description
In prestashop 8.1.4, a NULL pointer dereference was identified in the math_round function within Tools.php.
Description source: CVE List
Exploitation context
CISA SSVC decision
ExploitationNone
AutomatableYes
Technical impactPartial
CISA Coordinator · SSVC 2.0.3 · Evaluated Nov 29, 2024 · Source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
prestashopBrowse prestashop / prestashopDefault status: unknown | CVE List | 8.1.4 | affected |
References
4github.com
https://github.com/PrestaShop/PrestaShop/blob/8.1.4/classes/Tools.php github.com
https://github.com/prestashop/prestashop/commit/20fa542294da2cfa034a48041e292acaed0c2a7f nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2024-36626