Sploitus

CVE-2020-12120

No indexed exploits for CVE-2020-12120 yet

The Correos Express addon for PrestaShop 1.6 through 1.7 allows remote attackers to obtain sensitive information, such as a service's owner password that can be used to modify orders via SOAP. Attackers can also retrieve information about orders or buyers.

Affected products
Correosexpress, Prestashop
Prestashop Correos Express
≤ 1.7
Fix
Available
CVSS 3.1
7.5 HIGH
EPSS
1.8% (77th percentile)
Weakness
CWE-732
NVD status
Modified
Published
2020-04-27
CVE-2020-12120 at NVD
Authoritative description, scoring and affected products

No indexed exploits for CVE-2020-12120 yet

Our index is partial: it proves presence, never absence

No exploit for CVE-2020-12120 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.