PrestaShop prima 1.6.1.20 e 1.7.3.4 1.7.x prima della crittografia strapazza cookie nel Cookie.php, Rinjdael.php e Blowfish.php. |
https://www.exploit-db.com/exploits/45046/ https://www.exploit-db.com/exploits/45047/ http://build.prestashop.com/news/prestashop-1-7-3-4-1-6-1-20-maintenance-releases/ https://github.com/PrestaShop/PrestaShop/pull/9218 https://github.com/PrestaShop/PrestaShop/pull/9222 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-13784 |
Vulnerabilità: CVE-2018-13784
