Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The OpenID Single Sign-On authentication functionality in OXID eShop before 4.5.0 allows remote attackers to impersonate users via the email address in a crafted authentication token.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Oxid Esales OXID eShop 授权问题漏洞
Vulnerability Description
OXID eSales OXID eShop是德国OXID eSales公司的一套电子商务内容管理系统。该系统包括B2C、B2B等模块。 OXID eSales OXID eShop 4.5.0之前版本中的OpenID Single Sign-On authentication功能存在授权问题漏洞。远程攻击者可借助特制身份验证令牌中的邮件地址利用该漏洞冒充用户。
CVSS Information
N/A
Vulnerability Type
N/A