CVE Vulnerabilities

CVE-2009-3113

Published: Sep 09, 2009 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Unspecified vulnerability in OXID eShop Professional, Enterprise, and Community Edition before 4.1.2, 3.x, and 2.x allows remote attackers to gain write access to product reviews via a crafted parameter.

Affected Software

NameVendorStart VersionEnd Version
EshopOxid*2.7.0.3 (including)
EshopOxid*3.0.4.1 (including)
EshopOxid4.0.0.0_13895 (including)4.0.0.0_13895 (including)
EshopOxid4.0.0.0_13934 (including)4.0.0.0_13934 (including)
EshopOxid4.0.0.0_14260 (including)4.0.0.0_14260 (including)
EshopOxid4.0.0.1_14455 (including)4.0.0.1_14455 (including)
EshopOxid4.0.0.2_14842 (including)4.0.0.2_14842 (including)
EshopOxid4.0.0.2_14967 (including)4.0.0.2_14967 (including)
EshopOxid4.0.1.0_15990 (including)4.0.1.0_15990 (including)
EshopOxid4.1.0-17976 (including)4.1.0-17976 (including)
EshopOxid4.1.1-18442 (including)4.1.1-18442 (including)
EshopOxid4.1.2-18998 (including)4.1.2-18998 (including)
EshopOxid4.1.3-19918 (including)4.1.3-19918 (including)

References