Fiche vulnérabilité
CVE-2023-33493 : faille critique ajaxmanager project ajaxmanager (CVSS 9.8)
Description
An Unrestricted Upload of File with Dangerous Type vulnerability in the Ajaxmanager File and Database explorer (ajaxmanager) module for PrestaShop through 2.3.0, allows remote attackers to upload dangerous files without restrictions.
En bref
- Sévérité
- Critique (CVSS 9.8)
- Vecteur CVSS
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- Exploitation active
- Non signalée par la CISA
- Publication
- 1 août 2023
- Dernière mise à jour
- 17 juin 2026
Produits concernés
- ajaxmanager project ajaxmanager