Vulnerability Details CVE-2009-3112
Unspecified vulnerability in OXID eShop Professional, Enterprise, and Community Edition before 4.1.0 allows remote attackers to gain administrator privileges and access the shop backend via a crafted parameter.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.008
EPSS Ranking 72.5%
CVSS Severity
CVSS v2 Score 10.0
Products affected by CVE-2009-3112
-
cpe:2.3:a:oxidforge:oxid_eshop4.0.0.2_14967:*
-
cpe:2.3:a:oxidforge:oxid_eshop:4.0.0.0_13895
-
cpe:2.3:a:oxidforge:oxid_eshop:4.0.0.0_13934
-
cpe:2.3:a:oxidforge:oxid_eshop:4.0.0.0_14260
-
cpe:2.3:a:oxidforge:oxid_eshop:4.0.0.1_14455
-
cpe:2.3:a:oxidforge:oxid_eshop:4.0.0.2_14842
-
cpe:2.3:a:oxidforge:oxid_eshop:4.0.0.2_14967
-
cpe:2.3:a:oxidforge:oxid_eshop:4.0.1.0_15990
-
cpe:2.3:a:oxidforge:oxid_eshop:44.0.1.0_15990