Vulnerabilities
Vulnerable Software
Oxid-Esales:  >> Eshop  >> 6.5.0  Security Vulnerabilities
An issue was discovered in OXID eShop before 7. CMS pages in combination with Smarty may display user information if a CMS page contains a Smarty syntax error.
CVSS Score
7.5
EPSS Score
0.0
Published
2025-05-13
OXID eShop Enterprise Edition 6.5.0 – 6.5.2 before 6.5.3 allows uploading files with modified headers in the administration area. An attacker can upload a file with a modified header to create a HTTP Response Splitting attack.
CVSS Score
5.3
EPSS Score
0.002
Published
2023-08-02


Contact Us

Shodan ® - All rights reserved