Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
eshop vulnerabilities and exploits
(subscribe to this query)
8.8
CVSSv3
CVE-2021-27950
A SQL injection vulnerability in azurWebEngine in Sita AzurCMS up to and including 1.2.3.12 allows an authenticated malicious user to execute arbitrary SQL commands via the id parameter to mesdocs.ajax.php in azurWebEngine/eShop. By default, the query is executed as DBA.
Sitasoftware Azurcms
5.3
CVSSv3
CVE-2018-14020
An issue exists in the Paymorrow module 1.0.0 prior to 1.0.2 and 2.0.0 prior to 2.0.1 for OXID eShop. An attacker can bypass delivery-address change detection if the payment module doesn't use eShop's checkout procedure properly. To do so, the attacker must change the d...
Paymorrow Paymorrow 1.0.0
Paymorrow Paymorrow 2.0.0
Paymorrow Paymorrow 1.0.2
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2022-48700
CVE-2022-48689
CVE-2024-27956
CVE-2023-6363
SQL
NULL pointer dereference
CVE-2023-41830
CVE-2015-2051
arbitrary
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4