Critical severity9.1NVD Advisory· Published Feb 27, 2024· Updated Jun 17, 2026
CVE-2024-25846
CVE-2024-25846
Description
In the module "Product Catalog (CSV, Excel) Import" (simpleimportproduct) <= 6.7.0 from MyPrestaModules for PrestaShop, a guest can upload files with extensions .php.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- cpe:2.3:a:myprestamodules:product_catalog_\(csv\,_excel\)_import:*:*:*:*:*:prestashop:*:*Range: <=6.7.0
- MyPrestaModules for PrestaShop/Product Catalog (CSV, Excel) Importdescription
- Range: <=6.7.0
- Range: <=6.7.0
Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.