Lucene search

K
prionPRIOn knowledge basePRION:CVE-2023-5294
HistorySep 29, 2023 - 10:15 p.m.

Sql injection

2023-09-2922:15:00
PRIOn knowledge base
www.prio-n.com
6
sql injection
ecshop 4.1.1
critical vulnerability
remote attack
vdb-240925
nvd

8.9 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

44.2%

A vulnerability has been found in ECshop 4.1.1 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /admin/order.php. The manipulation of the argument goods_id leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-240925 was assigned to this vulnerability.

CPENameOperatorVersion
ecshopeq4.1.1

8.9 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

44.2%

Related for PRION:CVE-2023-5294