Vulnerabilities > Oxidforge > Oxid Eshop > 6.2.3

DATE CVE VULNERABILITY TITLE RISK
2023-04-11 CVE-2023-26260 Unspecified vulnerability in Oxidforge Oxid Eshop
OXID eShop 6.2.x before 6.4.4 and 6.5.x before 6.5.2 allows session hijacking, leading to partial access of a customer's account by an attacker, due to an improper check of the user agent.
network
low complexity
oxidforge
5.4