Exposure of Information Through Directory Listing in PrestaShop - CVE-2020-15081
Published: July 2, 2020 / Updated: May 4, 2026
PrestaShop
PrestaShop SA
Description
The vulnerability allows a remote attacker to disclose sensitive information.
The vulnerability exists due to information exposure through directory listing in the upload directory when handling requests for directory contents. A remote attacker can request directory listing content to disclose sensitive information.