First published: Fri Aug 04 2023(Updated: )
ECShop v4.1.16 contains an arbitrary file deletion vulnerability in the Admin Panel.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Shopex Ecshop | =4.1.16 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2023-39112.
The severity of CVE-2023-39112 is medium (6.5).
The affected software version for CVE-2023-39112 is ECShop v4.1.16.
The CWE ID for CVE-2023-39112 is CWE-287.
To fix the arbitrary file deletion vulnerability in ECShop v4.1.16, a patch or update provided by the vendor should be applied.