PrestaShop CVE-2008-5791 vulnerability

Core

Score

10 Critical

Date publish

31-12-2008

Versiones afectadas

  • Up to and including 1.0
  • Versions from 0.8.1 up to and including 0.8.1
  • Versions from 0.8.2 up to and including 0.8.2
  • Versions from 0.8.3 up to and including 0.8.3
  • Versions from 0.8.4 up to and including 0.8.4
  • Versions from 0.8.5 up to and including 0.8.5
  • Versions from 0.8.5.1 up to and including 0.8.5.1
  • Versions from 0.9 up to and including 0.9
  • Versions from 0.9.2 up to and including 0.9.2
  • Versions from 0.9.5 up to and including 0.9.5
  • Versions from 0.9.6 up to and including 0.9.6
  • Versions from 0.9.7 up to and including 0.9.7
  • Versions from 1.0.0.1 up to and including 1.0.0.1
  • Versions from 1.0.0.2 up to and including 1.0.0.2
  • Versions from 1.0.0.3 up to and including 1.0.0.3
  • Versions from 1.0.0.4 up to and including 1.0.0.4
  • Versions from 1.0.0.5 up to and including 1.0.0.5

Description

Multiple unspecified vulnerabilities in PrestaShop e-Commerce Solution before 1.1 Beta 2 (aka 1.1.0.1) have unknown impact and attack vectors, related to the (1) bankwire module, (2) cheque module, and other components.

References

Metrics

cvssMetricV2
sourcenvd@nist.gov
typePrimary
version2.0
vectorStringAV:N/AC:L/Au:N/C:C/I:C/A:C
baseScore10
accessVectorNETWORK
accessComplexityLOW
authenticationNONE
confidentialityImpactCOMPLETE
integrityImpactCOMPLETE
availabilityImpactCOMPLETE
baseSeverityHIGH
exploitabilityScore10
impactScore10
acInsufInfoTrue
obtainAllPrivilegeTrue
obtainUserPrivilegeFalse
obtainOtherPrivilegeFalse
userInteractionRequiredFalse
Scroll al inicio