modified eCommerce Shopsoftware 2.0.2.2 XML External Entity (XXE) vulnerability

Description:
modified eCommerce 2.0.2.2 rev 10690  has a XML External Entity (XXE) vulnerability.

Details:
More details will be release after it is fixed( 90 days after being fixed).

Patch:
https://www.modified-shop.org/forum/index.php?topic=37185.0

Credit:
This bugs was discovered by ADLab of VenusTech.














评论

此博客中的热门博文

A SQL injection vulnerability in "/account/details.php" of WebsiteBaker 2.10.0

A Reflected XSS Vulnerability in wordpres plugin"raygun4wp 1.8.0.0"