High severity7.5NVD Advisory· Published Nov 7, 2023· Updated Jun 17, 2026
CVE-2023-43984
CVE-2023-43984
Description
Insecure permissions in Smart Soft advancedexport before v4.4.7 allow unauthenticated attackers to arbitrarily download user information from the ps_customer table.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Advanced Export Products Orders Cron CSV Excel Project/Advanced Export Products Orders Cron CSV Excelcpe:2.3:a:advanced_export_products_orders_cron_csv_excel_project:advanced_export_products_orders_cron_csv_excel:*:*:*:*:*:prestashop:*:*Range: <=4.4.7
- Smart Soft/advancedexportdescription
- Range: <4.4.7
Patches
Vulnerability mechanics
References
1- security.friendsofpresta.org/modules/2023/11/07/advancedexport.htmlnvdThird Party Advisory
News mentions
0No linked articles in our index yet.