CVE-2023-39112: Medium severity ecshop vulnerability
Published Aug 4, 2023
·Updated
ECShop v4.1.16 contains an arbitrary file deletion vulnerability in the Admin Panel.
Affected Software
1 affected component
shopex ecshop=4.1.16
Event History
Aug 4, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
05:15 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2023-39112.
2
What is the severity of CVE-2023-39112?
The severity of CVE-2023-39112 is medium (6.5).
3
What is the affected software version for CVE-2023-39112?
The affected software version for CVE-2023-39112 is ECShop v4.1.16.
4
What is the CWE ID for CVE-2023-39112?
The CWE ID for CVE-2023-39112 is CWE-287.
5
How can I fix the arbitrary file deletion vulnerability in ECShop v4.1.16?
To fix the arbitrary file deletion vulnerability in ECShop v4.1.16, a patch or update provided by the vendor should be applied.