CVE Vulnerabilities

CVE-2009-3112

Published: Sep 09, 2009 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
10 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Unspecified vulnerability in OXID eShop Professional, Enterprise, and Community Edition before 4.1.0 allows remote attackers to gain administrator privileges and access the shop backend via a crafted parameter.

Affected Software

NameVendorStart VersionEnd Version
Oxid_eshopOxidforge4.0.0.0_13895 (including)4.0.0.0_13895 (including)
Oxid_eshopOxidforge4.0.0.0_13934 (including)4.0.0.0_13934 (including)
Oxid_eshopOxidforge4.0.0.0_14260 (including)4.0.0.0_14260 (including)
Oxid_eshopOxidforge4.0.0.1_14455 (including)4.0.0.1_14455 (including)
Oxid_eshopOxidforge4.0.0.2_14842 (including)4.0.0.2_14842 (including)
Oxid_eshopOxidforge4.0.0.2_14967 (including)4.0.0.2_14967 (including)
Oxid_eshopOxidforge4.0.1.0_15990 (including)4.0.1.0_15990 (including)
Oxid_eshopOxidforge44.0.1.0_15990 (including)44.0.1.0_15990 (including)
Oxid_eshop4.0.0.2_14967Oxidforge**

References