The OpenID Single Sign-On authentication functionality in OXID eShop prior to 4.5.0 allows remote malicious users to impersonate users via the email address in a crafted authentication token.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
oxid-esales eshop |