Vulnerabilities
Vulnerable Software
Lockon:  >> Ec-Cube  >> 2.13.1  Security Vulnerabilities
Cross-site request forgery (CSRF) vulnerability in LOCKON EC-CUBE 2.11.0 through 2.13.3 allows remote attackers to hijack the authentication of arbitrary users for requests that write to PHP scripts, related to the doValidToken function.
CVSS Score
5.1
EPSS Score
0.001
Published
2015-10-27


Contact Us

Shodan ® - All rights reserved