Vulnerability index

Browse CVEs

12 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Orders \(csv\, Excel\) Export Pro HIGH 7.5
CVE-2024-28396

An issue in MyPrestaModules ordersexport v.6.0.2 and before allows a remote attacker to execute arbitrary code via the download.php component.

Fix: after 6.0.2
Fix from $1,950 2024-03-20
Product Catalog \(csv\, Excel\) Import CRITICAL 9.8
CVE-2024-25847

SQL Injection vulnerability in MyPrestaModules "Product Catalog (CSV, Excel) Import" (simpleimportproduct) modules for PrestaShop versions 6.5.0 and …

Fix: after 6.5.0
Fix from $2,300 2024-03-03
Product Catalog \(csv\, Excel\) Import CRITICAL 9.1
CVE-2024-25846

In the module "Product Catalog (CSV, Excel) Import" (simpleimportproduct) <= 6.7.0 from MyPrestaModules for PrestaShop, a guest can upload files with…

Fix: after 6.7.0
Fix from $2,300 2024-02-27
Orders \(csv\, Excel\) Export Pro HIGH 7.5
CVE-2023-46354

In the module "Orders (CSV, Excel) Export PRO" (ordersexport) < 5.2.0 from MyPrestaModules for PrestaShop, a guest can download personal information …

Fix: 5.2.0+
Fix from $1,950 2023-12-06
Updateproducts CRITICAL 9.8
CVE-2023-46349

In the module "Product Catalog (CSV, Excel) Export/Update" (updateproducts) < 3.8.5 from MyPrestaModules for PrestaShop, a guest can perform SQL inje…

Fix: 3.8.5+
Fix from $2,300 2023-11-27
Cross Selling In Modal Cart CRITICAL 9.8
CVE-2023-46357

In the module "Cross Selling in Modal Cart" (motivationsale) < 3.5.0 from MyPrestaModules for PrestaShop, a guest can perform SQL injection. The meth…

Fix: 3.5.0+
Fix from $2,300 2023-11-22
Exportproducts CRITICAL 9.8
CVE-2023-45387

In the module "Product Catalog (CSV, Excel, XML) Export PRO" (exportproducts) in versions up to 5.0.0 from MyPrestaModules for PrestaShop, a guest ca…

Fix: 5.1.0+
Fix from $2,300 2023-11-17
Orders \(csv\, Excel\) Export Pro HIGH 8.8
CVE-2023-40923

MyPrestaModules ordersexport before v5.0 was discovered to contain multiple SQL injection vulnerabilities at send.php via the key and save_setting pa…

Fix: 5.0+
Fix from $1,950 2023-11-15
Exportproducts HIGH 7.5
CVE-2023-46346

In the module "Product Catalog (CSV, Excel, XML) Export PRO" (exportproducts) in versions up to 4.1.1 from MyPrestaModules for PrestaShop, a guest ca…

Fix: 5.0.0+
Fix from $1,950 2023-10-25
Product Catalog \(csv\, Excel\) Import CRITICAL 9.8
CVE-2023-39675

SimpleImportProduct Prestashop Module v6.2.9 was discovered to contain a SQL injection vulnerability via the key parameter at send.php.

No fix yet
Fix from $2,300 2023-09-20
Product Catalog \(csv\, Excel\) Import HIGH 7.5
CVE-2023-39677EPSS 31%

MyPrestaModules Prestashop Module v6.2.9 and UpdateProducts Prestashop Module v3.6.9 were discovered to contain a PHPInfo information disclosure vuln…

No fix yet
Fix from $1,950 2023-09-20
Frequently Asked Questions Page CRITICAL 9.8
CVE-2023-26858

SQL injection vulnerability found in PrestaSHp faqs v.3.1.6 allows a remote attacker to escalate privileges via the faqsBudgetModuleFrontController::…

Patch available
Fix from $2,300 2023-03-31