Lucene search

K
cvelistMitreCVELIST:CVE-2017-14993
HistoryFeb 20, 2018 - 11:00 p.m.

CVE-2017-14993

2018-02-2023:00:00
mitre
www.cve.org
3

EPSS

0.002

Percentile

58.6%

OXID eShop Community Edition before 6.0.0 RC3 (development), 4.10.x before 4.10.6 (maintenance), and 4.9.x before 4.9.11 (legacy), Enterprise Edition before 6.0.0 RC3 (development), 5.2.x before 5.2.11 (legacy), and 5.3.x before 5.3.6 (maintenance), and Professional Edition before 6.0.0 RC3 (development), 4.9.x before 4.9.11 (legacy) and 4.10.x before 4.10.6 (maintenance) allow remote attackers to crawl specially crafted URLs (aka β€œforced browsing”) in order to overflow the database of the shop and consequently make it stop working. Prerequisite: the shop allows rendering empty categories to the storefront via an admin option.

EPSS

0.002

Percentile

58.6%

Related for CVELIST:CVE-2017-14993