High severity8.8NVD Advisory· Published Jan 23, 2020· Updated Jun 17, 2026
CVE-2013-6358
CVE-2013-6358
Description
PrestaShop 1.5.5 allows remote authenticated attackers to execute arbitrary code by uploading a crafted profile and then accessing it in the module/ directory.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:prestashop:prestashop:1.5.5.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:prestashop:prestashop:1.5.5.0:*:*:*:*:*:*:*
- (no CPE)range: <1.5.5
- PrestaShop/PreShopdescription
Patches
Vulnerability mechanics
References
1- web.archive.org/web/20150423041900/http://labs.davidsopas.com/2013/10/how-salesman-could-hack-prestashop.htmlnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.