Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
lockon ec-cube 2.12.4 vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2013-3654
Directory traversal vulnerability in LOCKON EC-CUBE 2.12.0 up to and including 2.12.4 allows remote malicious users to read arbitrary image files via vectors related to data/class/SC_CheckError.php and data/class/SC_FormParam.php, a different vulnerability than CVE-2013-3650.
Lockon Ec-cube 2.12.0
Lockon Ec-cube 2.12.1
Lockon Ec-cube 2.12.3
Lockon Ec-cube 2.12.2
Lockon Ec-cube 2.12.4
NA
CVE-2013-3651
LOCKON EC-CUBE 2.11.2 up to and including 2.12.4 allows remote malicious users to conduct unspecified PHP code-injection attacks via a crafted string, related to data/class/SC_CheckError.php and data/class/SC_FormParam.php.
Lockon Ec-cube 2.12.3
Lockon Ec-cube 2.12.4
Lockon Ec-cube 2.11.5
Lockon Ec-cube 2.12.1
Lockon Ec-cube 2.11.2
Lockon Ec-cube 2.11.3
Lockon Ec-cube 2.11.4
Lockon Ec-cube 2.12.0
Lockon Ec-cube 2.12.2
1 Github repository
NA
CVE-2013-4702
Multiple directory traversal vulnerabilities in the doApiAction function in data/class/api/SC_Api_Operation.php in LOCKON EC-CUBE 2.12.0 up to and including 2.12.5 on Windows allow remote malicious users to read arbitrary files via vectors involving a (1) Operation, (2) Service, ...
Lockon Ec-cube 2.12.2
Lockon Ec-cube 2.12.3
Lockon Ec-cube 2.12.5
Lockon Ec-cube 2.12.5en
Lockon Ec-cube 2.12.4
Lockon Ec-cube 2.12.0
Lockon Ec-cube 2.12.1
Lockon Ec-cube 2.12.4en
Lockon Ec-cube 2.12.3en
Lockon Ec-cube 2.12.3enp1
Lockon Ec-cube 2.12.3enp2
NA
CVE-2013-3652
Cross-site scripting (XSS) vulnerability in data/class/pages/products/LC_Page_Products_List.php in LOCKON EC-CUBE 2.11.0 up to and including 2.12.4 allows remote malicious users to inject arbitrary web script or HTML via vectors involving the classcategory_id2 field, a different ...
Lockon Ec-cube 2.12.3
Lockon Ec-cube 2.12.4
Lockon Ec-cube 2.11.1
Lockon Ec-cube 2.11.2
Lockon Ec-cube 2.11.3
Lockon Ec-cube 2.11.4
Lockon Ec-cube 2.12.0
Lockon Ec-cube 2.12.2
Lockon Ec-cube 2.11.0
Lockon Ec-cube 2.11.5
Lockon Ec-cube 2.12.1
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
man-in-the-middle
CVE-2024-34558
CVE-2024-32674
CVE-2024-34351
XPath injection
CVE-2023-45866
CVE-2024-25528
CVE-2024-25517
path traversal
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started