High severity7.5NVD Advisory· Published Feb 27, 2024· Updated Jun 17, 2026
CVE-2024-25840
CVE-2024-25840
Description
In the module "Account Manager | Sales Representative & Dealers | CRM" (prestasalesmanager) up to 9.0 from Presta World for PrestaShop, a guest can download personal information without restriction by performing a path traversal attack.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:prestaworld:account_manager:*:*:*:*:*:prestashop:*:*Range: <9.0.0
- Presta World/PrestaShopdescription
- Range: <=9.0
Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.