Vulnerabilities > XOS Shop

DATE CVE VULNERABILITY TITLE RISK
2022-06-16 CVE-2021-37764 Missing Authorization vulnerability in Xos-Shop XOS Shop System 1.0.9
Arbitrary File Deletion vulnerability in XOS-Shop xos_shop_system 1.0.9 via current_manufacturer_image parameter to /shop/admin/manufacturers.php.
network
low complexity
xos-shop CWE-862
8.1
2022-06-16 CVE-2021-46820 Missing Authorization vulnerability in Xos-Shop XOS Shop System 1.0.9
Arbitrary File Deletion vulnerability in XOS-Shop xos_shop_system 1.0.9 via current_manufacturer_image parameter to /shop/admin/categories.php
network
low complexity
xos-shop CWE-862
8.1