← Back to CVE List
CVE-2018-5682
PrestaShop 1.7.2.4 allows user enumeration via the Reset Password feature, by noticing which reset attempts do not produce a "This account does not exist" error message.
> MITRE Terms of Use apply – see LICENSE‑MITRE.txt