Top technology
Linux 13140
Google 12530
Microsoft 12379
Oracle 6737
Apple 6692
Adobe 6387
Ibm 6330
Cisco 5757
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 5.4
CVE-2024-35362
Ecshop 3.6 is vulnerable to Cross Site Scripting (XSS) via ecshop/article_cat.php.
Ecshop
No fix yet
HIGH 8.8
CVE-2024-1530
A vulnerability, which was classified as critical, has been found in ECshop 4.1.8. Affected by this issue is some unknown functionality of the file /…
Ecshop
No fix yet
HIGH 8.8
CVE-2023-5294
A vulnerability has been found in ECshop 4.1.1 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /ad…
Ecshop
No fix yet
MEDIUM 6.5
CVE-2023-5293
A vulnerability, which was classified as critical, was found in ECshop 4.1.5. Affected is an unknown function of the file /admin/leancloud.php. The m…
Ecshop
No fix yet
MEDIUM 6.5
CVE-2023-39112
ECShop v4.1.16 contains an arbitrary file deletion vulnerability in the Admin Panel.
Ecshop
No fix yet
CRITICAL 9.8
CVE-2023-0783
A vulnerability was found in EcShop 4.1.5. It has been classified as critical. This affects an unknown part of the file /ecshop/admin/template.php of…
Ecshop
No fix yet
HIGH 7.5
CVE-2021-41460EPSS 7%
ECShop 4.1.0 has SQL injection vulnerability, which can be exploited by attackers to obtain sensitive information.
Ecshop
Mitigation only
CRITICAL 9.8
CVE-2021-43679
ecshop v2.7.3 is affected by a SQL injection vulnerability in shopex\ecshop\upload\api\client\api.php.
Ecshop
No fix yet
MEDIUM 6.1
CVE-2020-20640
Cross Site Scripting (XSS) vulnerability in ECShop 4.0 due to security filtering issues, in the user.php file, we can use the html entity encoding to…
Ecshop
No fix yet
CRITICAL 9.8
CVE-2020-22204
SQL Injection in ECShop 2.7.6 via the goods_number parameter to flow.php. .
Ecshop
No fix yet
CRITICAL 9.8
CVE-2020-22205
SQL Injection in ECShop 3.0 via the id parameter to admin/shophelp.php.
Ecshop
No fix yet
CRITICAL 9.8
CVE-2020-22206
SQL Injection in ECShop 3.0 via the aid parameter to admin/affiliate_ck.php.
Ecshop
No fix yet
HIGH 7.5
CVE-2010-2042
SQL injection vulnerability in search.php in ECShop 2.7.2 allows remote attackers to execute arbitrary SQL commands via the encode parameter. NOTE: …
Ecshop
No fix yet