İçeriğe atla
Noroxi

shopizer kayıtları

shopizer üreticisine ait 14 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
0
Düzeltme kaydı olan
%35,7
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

14 kayıt
  • CVE-2022-23063
    35İzleyin

    Shopizer - Insufficient Session Expiration

    YüksekCVSS 8,8İstismar yokEPSS %1

    shopizer · shopizer3 May 2022

  • CVE-2025-51605
    32İzleyin

    An issue was discovered in Shopizer 3.2.7.

    YüksekCVSS 8,1İstismar yokEPSS %0

    shopizer · shopizer22 Ağu 2025

  • CVE-2014-4963
    28İzleyin

    Shopizer 1.1.5 and earlier allows remote attackers to modify the account settings of arbitrary users via the customer.customerId parameter t

    OrtaCVSS 6,8Kavram kanıtıEPSS %4

    shopizer · shopizer15 Tem 2014

  • CVE-2014-4964
    28İzleyin

    Multiple cross-site request forgery (CSRF) vulnerabilities in Shopizer 1.1.5 and earlier allow remote attackers to hijack the authentication

    OrtaCVSS 6,8Kavram kanıtıEPSS %2

    shopizer · shopizer15 Tem 2014

  • CVE-2014-4962
    26İzleyin

    Shopizer 1.1.5 and earlier allows remote attackers to reduce the total cost of their shopping cart via a negative number in the productQuant

    OrtaCVSS 6,4Kavram kanıtıEPSS %5

    shopizer · shopizer15 Tem 2014

  • CVE-2022-23061
    26İzleyin

    Shopizer - IDOR delete superadmin

    OrtaCVSS 6,5İstismar yokEPSS %1

    shopizer · shopizer1 May 2022

  • CVE-2020-11007
    26İzleyin

    Negative charge in shopping cart possible in Shopizer

    OrtaCVSS 6,5İstismar yokEPSS %1

    shopizer · shopizer16 Nis 2020

  • CVE-2020-11006
    21İzleyin

    Potential remote code execution in Shopizer

    OrtaCVSS 5,4İstismar yokEPSS %1

    shopizer · shopizer8 May 2020

  • CVE-2021-33562
    20İzleyin

    A reflected cross-site scripting (XSS) vulnerability in Shopizer before 2.17.0 allows remote attackers to inject arbitrary web script or HTM

    OrtaCVSS 4,8Kavram kanıtıEPSS %3

    shopizer · shopizer24 May 2021

  • CVE-2021-33561
    20İzleyin

    A stored cross-site scripting (XSS) vulnerability in Shopizer before 2.17.0 allows remote attackers to inject arbitrary web script or HTML v

    OrtaCVSS 4,8Kavram kanıtıEPSS %3

    shopizer · shopizer24 May 2021

  • CVE-2014-5385
    20İzleyin

    com/salesmanager/central/profile/ProfileAction.java in Shopizer 1.1.5 and earlier does not restrict the number of authentication attempts, w

    OrtaCVSS 5,0İstismar yokEPSS %1

    shopizer · shopizer21 Ağu 2014

  • CVE-2022-23059
    19İzleyin

    Shopizer - Stored XSS in Manage Images

    OrtaCVSS 4,8İstismar yokEPSS %1

    shopizer · shopizer29 Mar 2022

  • CVE-2022-23060
    19İzleyin

    Shopizer - Stored XSS in Manage Files

    OrtaCVSS 4,8İstismar yokEPSS %1

    shopizer · shopizer1 May 2022

  • CVE-2014-4965
    18İzleyin

    Multiple cross-site scripting (XSS) vulnerabilities in Shopizer 1.1.5 and earlier allow remote attackers to inject arbitrary web script or H

    OrtaCVSS 4,3Kavram kanıtıEPSS %3

    shopizer · shopizer15 Tem 2014