Vulnerability CVE-2024-34991


Published: 2024-06-24   Modified: 2024-06-25

Description:
In the module "Axepta" (axepta) before 1.3.4 from Quadra Informatique for PrestaShop, a guest can download partial credit card information (expiry date) / postal address / email / etc. without restriction due to a lack of permissions control.

 References:
https://security.friendsofpresta.org/modules/2024/06/20/axepta.html

Copyright 2024, cxsecurity.com

 

Back to Top