CVE-2024-34991 Information

Description

In the module \Axepta\ (axepta) before 1.3.4 from Quadra Informatique for PrestaShop a guest can download partial credit card information (expiry date) / postal address / email / etc. without restriction due to a lack of permissions control.

Reference

https://security.friendsofpresta.org/modules/2024/06/20/axepta.html

Share on: