Vulnerabilities > Myprestamodules > High
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-12-06 | CVE-2023-46354 | Missing Authorization vulnerability in Myprestamodules Orders (Csv, Excel) Export PRO In the module "Orders (CSV, Excel) Export PRO" (ordersexport) < 5.2.0 from MyPrestaModules for PrestaShop, a guest can download personal information without restriction. | 7.5 |
2023-11-15 | CVE-2023-40923 | SQL Injection vulnerability in Myprestamodules Orders (Csv, Excel) Export MyPrestaModules ordersexport before v5.0 was discovered to contain multiple SQL injection vulnerabilities at send.php via the key and save_setting parameters. | 8.8 |
2023-10-25 | CVE-2023-46346 | Path Traversal vulnerability in Myprestamodules Exportproducts 4.1.1 In the module "Product Catalog (CSV, Excel, XML) Export PRO" (exportproducts) in versions up to 4.1.1 from MyPrestaModules for PrestaShop, a guest can download personal information without restriction by performing a path traversal attack. | 7.5 |