A vulnerability, which was classified as problematic, was found in ECshop up to 4.1.8. This affects an unknown part of the component New Product Handler. The manipulation leads to unrestricted upload. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-222357 was assigned to this vulnerability.
References
Link | Resource |
---|---|
https://github.com/wjzdalao/ecshop4.1.8/issues/2 | Broken Link |
https://vuldb.com/?ctiid.222357 | Third Party Advisory VDB Entry |
https://vuldb.com/?id.222357 | Third Party Advisory VDB Entry |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: VulDB
Published: 2023-03-06T07:06:01.813Z
Updated: 2024-02-13T07:55:17.159Z
Reserved: 2023-03-06T07:05:46.747Z
Link: CVE-2023-1185
JSON object: View
NVD Information
Status : Modified
Published: 2023-03-06T08:15:08.610
Modified: 2024-05-17T02:17:52.707
Link: CVE-2023-1185
JSON object: View
Redhat Information
No data.
CWE