CVE-2016-1201
30.04.2016, 10:59
Cross-site request forgery (CSRF) vulnerability in LOCKON EC-CUBE 3.0.0 through 3.0.9 allows remote attackers to hijack the authentication of administrators.
Vendor | Product | Version |
---|---|---|
lockon | ec-cube | 3.0.0 |
lockon | ec-cube | 3.0.1 |
lockon | ec-cube | 3.0.2 |
lockon | ec-cube | 3.0.3 |
lockon | ec-cube | 3.0.4 |
lockon | ec-cube | 3.0.5 |
lockon | ec-cube | 3.0.6 |
lockon | ec-cube | 3.0.7 |
lockon | ec-cube | 3.0.8 |
lockon | ec-cube | 3.0.9 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References