Medium severity4.8NVD Advisory· Published Jul 13, 2022· Updated Jun 17, 2026
CVE-2020-21967
CVE-2020-21967
Description
File upload vulnerability in the Catalog feature in Prestashop 1.7.6.7 allows remote attackers to run arbitrary code via the add new file page.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:prestashop:prestashop:1.7.6.7:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:prestashop:prestashop:1.7.6.7:*:*:*:*:*:*:*
- (no CPE)
- (no CPE)range: = 1.7.6.7
Patches
Vulnerability mechanics
References
2- packetstormsecurity.com/files/167742/PrestaShop-1.7.6.7-Cross-Site-Scripting.htmlnvdExploitThird Party AdvisoryVDB Entry
- github.com/PrestaShop/PrestaShop/issues/20306nvdExploitIssue TrackingThird Party Advisory
News mentions
0No linked articles in our index yet.