Vulnerabilities > Shopex > Ecshop > 4.1.0

DATE CVE VULNERABILITY TITLE RISK
2023-03-06 CVE-2023-1184 Unrestricted Upload of File with Dangerous Type vulnerability in Shopex Ecshop
A vulnerability, which was classified as problematic, has been found in ECshop up to 4.1.8.
network
low complexity
shopex CWE-434
8.8
2023-03-06 CVE-2023-1185 Unrestricted Upload of File with Dangerous Type vulnerability in Shopex Ecshop
A vulnerability, which was classified as problematic, was found in ECshop up to 4.1.8.
network
low complexity
shopex CWE-434
8.8
2022-06-28 CVE-2021-41460 SQL Injection vulnerability in Shopex Ecshop 4.1.0
ECShop 4.1.0 has SQL injection vulnerability, which can be exploited by attackers to obtain sensitive information.
network
low complexity
shopex CWE-89
5.0