CVE-2024-25844: High severity prestashop vulnerability
An issue was discovered in Common-Services "So Flexibilite" (soflexibilite) module for PrestaShop before version 4.1.26, allows remote attackers to escalate privileges and obtain sensitive information via debug file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-25844?
CVE-2024-25844 is rated as a high severity vulnerability due to its potential for privilege escalation and exposing sensitive information.
How do I fix CVE-2024-25844?
To fix CVE-2024-25844, you should upgrade the PrestaShop So Flexibilite module to version 4.1.26 or higher.
What type of attacks exploit CVE-2024-25844?
CVE-2024-25844 can be exploited by remote attackers to escalate privileges and gain unauthorized access to sensitive information.
What software is affected by CVE-2024-25844?
CVE-2024-25844 affects the PrestaShop So Flexibilite module before version 4.1.26.
Is there a way to mitigate CVE-2024-25844?
Mitigation for CVE-2024-25844 primarily involves updating the module to the latest version to patch the vulnerability.