An Unrestricted Upload of File with Dangerous Type vulnerability in the Ajaxmanager File and Database explorer (ajaxmanager) module for PrestaShop through 2.3.0, allows remote attackers to upload dangerous files without restrictions.
References
Link | Resource |
---|---|
https://security.friendsofpresta.org/module/2023/07/28/ajaxmanager.html | Vendor Advisory |
Configurations
History
04 Aug 2023, 17:48
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.8 |
First Time |
Ajaxmanager Project ajaxmanager
Ajaxmanager Project |
|
CPE | cpe:2.3:a:ajaxmanager_project:ajaxmanager:*:*:*:*:*:prestashop:*:* | |
CWE | CWE-434 | |
References | (MISC) https://security.friendsofpresta.org/module/2023/07/28/ajaxmanager.html - Vendor Advisory |
01 Aug 2023, 17:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-08-01 17:15
Updated : 2024-02-28 20:33
NVD link : CVE-2023-33493
Mitre link : CVE-2023-33493
CVE.ORG link : CVE-2023-33493
JSON object : View
Products Affected
ajaxmanager_project
- ajaxmanager
CWE
CWE-434
Unrestricted Upload of File with Dangerous Type