Vulnerabilities > ZEN Cart > ZEN Cart > 1.5.7b

DATE CVE VULNERABILITY TITLE RISK
2021-01-26 CVE-2021-3291 OS Command Injection vulnerability in Zen-Cart ZEN Cart 1.5.7B
Zen Cart 1.5.7b allows admins to execute arbitrary OS commands by inspecting an HTML radio input element (within the modules edit page) and inserting a command.
network
low complexity
zen-cart CWE-78
critical
9.0