CVE-2023-43984

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
07/11/2023
Last modified:
05/09/2024

Description

Insecure permissions in Smart Soft advancedexport before v4.4.7 allow unauthenticated attackers to arbitrarily download user information from the ps_customer table.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:advanced_export_products_orders_cron_csv_excel_project:advanced_export_products_orders_cron_csv_excel:*:*:*:*:*:prestashop:*:* 4.4.7 (including)