Shopware是德国Shopware公司的一套开源电子商务软件。 Shopware 存在输入验证错误漏洞,建议更新到当前版本6.4.3.1。目前尚无该漏洞的更多信息,请随时关注CNNVD或厂商公告。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2021-37708 | 8.8 HIGH | Command injection in mail agent settings |
| CVE-2021-37711 | 8.8 HIGH | Authenticated server-side request forgery in file upload via URL. |
| CVE-2021-37710 | 8.0 HIGH | Cross-Site Scripting via SVG media files |
| CVE-2021-37709 | 6.5 MEDIUM | Insecure direct object reference of log files of the Import/Export feature |
No comments yet