Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
lockon ec-cube 2.12.6en vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2013-5995
data/class/helper/SC_Helper_Address.php in the front-features implementation in LOCKON EC-CUBE 2.12.3 up to and including 2.13.0 allows remote authenticated users to obtain sensitive information via unspecified vectors related to addresses.
Lockon Ec-cube 2.12.5en
Lockon Ec-cube 2.12.6
Lockon Ec-cube 2.12.5
Lockon Ec-cube 2.12.3
Lockon Ec-cube 2.12.4en
Lockon Ec-cube 2.13.0
Lockon Ec-cube 2.12.3enp2
Lockon Ec-cube 2.12.3enp1
Lockon Ec-cube 2.12.3en
Lockon Ec-cube 2.12.6en
NA
CVE-2013-5994
data/class/pages/mypage/LC_Page_Mypage_DeliveryAddr.php in LOCKON EC-CUBE 2.11.2 up to and including 2.13.0 allows remote malicious users to obtain sensitive information via a direct request, which reveals the full path in an error message.
Lockon Ec-cube 2.11.2
Lockon Ec-cube 2.12.5en
Lockon Ec-cube 2.12.6
Lockon Ec-cube 2.12.5
Lockon Ec-cube 2.12.3
Lockon Ec-cube 2.11.3
Lockon Ec-cube 2.11.5
Lockon Ec-cube 2.12.1
Lockon Ec-cube 2.12.4en
Lockon Ec-cube 2.13.0
Lockon Ec-cube 2.12.3enp2
Lockon Ec-cube 2.12.3enp1
Lockon Ec-cube 2.11.4
Lockon Ec-cube 2.12.0
Lockon Ec-cube 2.12.2
Lockon Ec-cube 2.12.3en
Lockon Ec-cube 2.12.6en
NA
CVE-2013-5993
Cross-site request forgery (CSRF) vulnerability in LOCKON EC-CUBE 2.11.0 up to and including 2.13.0 allows remote malicious users to hijack the authentication of arbitrary users via unspecified vectors related to refusals.
Lockon Ec-cube 2.11.2
Lockon Ec-cube 2.11.0
Lockon Ec-cube 2.12.5en
Lockon Ec-cube 2.12.6
Lockon Ec-cube 2.12.5
Lockon Ec-cube 2.12.3
Lockon Ec-cube 2.11.3
Lockon Ec-cube 2.11.5
Lockon Ec-cube 2.12.1
Lockon Ec-cube 2.12.4en
Lockon Ec-cube 2.13.0
Lockon Ec-cube 2.12.3enp2
Lockon Ec-cube 2.12.3enp1
Lockon Ec-cube 2.11.4
Lockon Ec-cube 2.12.0
Lockon Ec-cube 2.12.2
Lockon Ec-cube 2.12.3en
Lockon Ec-cube 2.12.6en
Lockon Ec-cube 2.11.1
NA
CVE-2013-5996
Multiple cross-site scripting (XSS) vulnerabilities in shopping/payment.tpl components in LOCKON EC-CUBE 2.11.0 up to and including 2.13.0 allow remote malicious users to inject arbitrary web script or HTML via crafted values.
Lockon Ec-cube 2.11.2
Lockon Ec-cube 2.11.0
Lockon Ec-cube 2.12.5en
Lockon Ec-cube 2.12.6
Lockon Ec-cube 2.12.5
Lockon Ec-cube 2.12.3
Lockon Ec-cube 2.11.3
Lockon Ec-cube 2.11.5
Lockon Ec-cube 2.12.1
Lockon Ec-cube 2.12.4en
Lockon Ec-cube 2.13.0
Lockon Ec-cube 2.12.3enp2
Lockon Ec-cube 2.12.3enp1
Lockon Ec-cube 2.11.4
Lockon Ec-cube 2.12.0
Lockon Ec-cube 2.12.2
Lockon Ec-cube 2.12.3en
Lockon Ec-cube 2.12.6en
Lockon Ec-cube 2.11.1
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-37316
firmware
CVE-2024-30078
CVE-2024-5995
remote code execution
logic flaw
CVE-2024-20693
CVE-2024-37315
CVE-2024-5464
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started