Vulnerabilities > Next Engine

DATE CVE VULNERABILITY TITLE RISK
2023-05-10 CVE-2023-27919 Improper Authentication vulnerability in Next-Engine Next Engine Integration
Authentication bypass vulnerability in NEXT ENGINE Integration Plugin (for EC-CUBE 2.0 series) all versions allows a remote unauthenticated attacker to alter the information stored in the system.
network
low complexity
next-engine CWE-287
5.3