Ec-cube是日本Ec-cube公司的一套开源的电子商务系统。 EC-CUBE 3.0.0版本到3.0.18版本存在安全漏洞,该漏洞源于从对渲染UI层或帧的不适当限制会导致点击劫持攻击。如果用户在登录到管理页面时访问特殊设计的页面,可能会执行意外的操作。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| EC-CUBE CO.,LTD. | EC-CUBE | versions from 3.0.0 to 3.0.18 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet