First published: Fri Nov 29 2024(Updated: )
In prestashop 8.1.4, a NULL pointer dereference was identified in the math_round function within Tools.php.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Prestashop |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-36626 is classified as a medium severity vulnerability due to the potential for application crashes.
To fix CVE-2024-36626, you should update to the latest version of PrestaShop where the vulnerability has been addressed.
CVE-2024-36626 affects PrestaShop version 8.1.4 and involves a NULL pointer dereference in the math_round function.
Yes, CVE-2024-36626 can potentially be exploited remotely if an attacker can trigger the vulnerable function.
The impact of CVE-2024-36626 may include application crashes or unexpected behavior when using the affected functionality.