CVE-2018-13784
PrestaShop before 1.6.1.20 and 1.7.x before 1.7.3.4 mishandles cookie encryption in Cookie.php, Rinjdael.php, and Blowfish.php.
- Affected products
- Prestashop
- Prestashop
- < 1.6.1.20, 1.7.3.4
- Fix
- Available
- CVSS 3.0
- 9.1 CRITICAL
- EPSS
- 16.7% (97th percentile)
- NVD status
- Modified
- Published
- 2018-07-09
CVE-2018-13784 at NVD
5 known exploits for CVE-2018-13784
Proof-of-concept code and exploit modules indexed by Sploitus