High severity7.5NVD Advisory· Published Mar 3, 2024· Updated Jun 17, 2026
CVE-2024-24307
CVE-2024-24307
Description
Path Traversal vulnerability in Tunis Soft "Product Designer" (productdesigner) module for PrestaShop before version 1.178.36, allows a remote attacker to escalate privileges and obtain sensitive information via the ajaxProcessCropImage() method.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:prestalife:product_designer:*:*:*:*:*:prestashop:*:*Range: <1.178.36
- Tunis Soft/Product Designerdescription
- Range: <1.178.36
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.