CVE-2024-25839

high

Description

An issue was discovered in Webbax "Super Newsletter" (supernewsletter) module for PrestaShop versions 1.4.21 and before, allows local attackers to escalate privileges and obtain sensitive information.

References

https://github.com/friends-of-presta/security-advisories/blob/main/_posts/2024-02-29-supernewsletter.md

Details

Source: Mitre, NVD

Published: 2024-03-03

Updated: 2024-08-26

Risk Information

CVSS v2

Base Score: 2.1

Vector: CVSS2#AV:L/AC:L/Au:N/C:P/I:N/A:N

Severity: Low

CVSS v3

Base Score: 7.5

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Severity: High