Vulnerability Details CVE-2019-15081
OpenCart 3.x, when the attacker has login access to the admin panel, allows stored XSS within the Source/HTML editing feature of the Categories, Product, and Information pages.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 42.8%
CVSS Severity
CVSS v3 Score 4.8
CVSS v2 Score 3.5
Products affected by CVE-2019-15081
-
cpe:2.3:a:opencart:opencart:3.0.0.0
-
cpe:2.3:a:opencart:opencart:3.0.0.2
-
cpe:2.3:a:opencart:opencart:3.0.1.0
-
cpe:2.3:a:opencart:opencart:3.0.1.1
-
cpe:2.3:a:opencart:opencart:3.0.1.2
-
cpe:2.3:a:opencart:opencart:3.0.2.0
-
cpe:2.3:a:opencart:opencart:3.0.3.0
-
cpe:2.3:a:opencart:opencart:3.0.3.1
-
cpe:2.3:a:opencart:opencart:3.0.3.2