Vulnerability Details CVE-2009-3113
Unspecified vulnerability in OXID eShop Professional, Enterprise, and Community Edition before 4.1.2, 3.x, and 2.x allows remote attackers to gain write access to product reviews via a crafted parameter.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 47.5%
CVSS Severity
CVSS v2 Score 5.0
Products affected by CVE-2009-3113
-
-
cpe:2.3:a:oxid:eshop:4.0.0.0_13895
-
cpe:2.3:a:oxid:eshop:4.0.0.0_13934
-
cpe:2.3:a:oxid:eshop:4.0.0.0_14260
-
cpe:2.3:a:oxid:eshop:4.0.0.1_14455
-
cpe:2.3:a:oxid:eshop:4.0.0.2_14842
-
cpe:2.3:a:oxid:eshop:4.0.0.2_14967
-
cpe:2.3:a:oxid:eshop:4.0.1.0_15990
-
cpe:2.3:a:oxid:eshop:4.1.0-17976
-
cpe:2.3:a:oxid:eshop:4.1.1-18442
-
cpe:2.3:a:oxid:eshop:4.1.2-18998
-
cpe:2.3:a:oxid:eshop:4.1.3-19918