Description
In PrestaShop from version 1.6.0.1 and before version 1.7.6.6, the dashboard allows rewriting all configuration variables. The problem is fixed in 1.7.6.6
Remediation
References
Related Vulnerabilities
Atlassian Jira Permissions, Privileges, and Access Controls Vulnerability (CVE-2012-2928)
Oracle JRE CVE-2023-21954 Vulnerability (CVE-2023-21954)
WordPress Plugin Import and export users and customers Directory Traversal (1.14.2)
WordPress 2.8.2 Multiple Security Bypass Vulnerabilities (2.0 - 2.8.2)