Excessive privileges In prestashop/prestashop
Description
PrestaShop allows users to uninstall modules from backoffice, even with low rights
Impact
Any module can be disabled or uninstalled from back office, even with low user right.
Patches
8.1.2
Workarounds
none
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Package | Affected version | Patched versions |
|---|---|---|---|
packagist | 8.1.2 |
Aliases
1. 2. 3. 4. 5.
References
1. 2.