First published: Mon Mar 28 2022(Updated: )
EyouCMS v1.5.4 was discovered to lack parameter filtering in \user\controller\shop.php, leading to payment logic vulnerabilities.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Eyoucms Eyoucms | =1.5.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2022-26273.
The severity level of CVE-2022-26273 is critical.
EyouCMS version 1.5.4 is affected by CVE-2022-26273.
CVE-2022-26273 can lead to payment logic vulnerabilities.
No fix is currently available for CVE-2022-26273. It is recommended to keep the software up to date and apply any security patches or updates provided by the vendor when they become available.