CVE-2024-33274 Information
May 04, 2024
cve
Description
Directory Traversal vulnerability in FME Modules customfields v.2.2.7 and before allows a remote attacker to obtain sensitive information via the Custom Checkout Fields Add Custom Fields to Checkout parameter of the ajax.php
Reference
https://addons.prestashop.com/en/registration-ordering-process/19008-custom-checkout-fields-add-custom-fields-to-checkout.html https://security.friendsofpresta.org/modules/2024/04/29/customfields.html
Share on: