Description PrestaShop 1.6.x before 1.6.1.23 and 1.7.x before 1.7.4.4 allows remote attackers to delete an image directory. Remediation References CVE-2018-19125 Related Vulnerabilities PostgreSQL Out-of-bounds Read Vulnerability (CVE-2019-10129) WordPress Plugin Image Export Arbitrary File Download (1.1.0) Oracle Database Server CVE-2008-2591 Vulnerability (CVE-2008-2591) Magento Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2015-1398) WordPress Plugin Daily Inspiration Generator Open Redirect (2.0) Severity High Classification CVE-2018-19125 CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N Tags Missing Update Known Vulnerabilities