CVE-2023-45384
19.10.2023, 13:15
KnowBand supercheckout > 5.0.7 and < 6.0.7 is vulnerable to Unrestricted Upload of File with Dangerous Type. In the module "Module One Page Checkout, Social Login & Mailchimp" (supercheckout), a guest can upload files with extensions .phpEnginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| knowband | supercheckout | 5.0.7 ≤ 𝑥 < 6.0.7 |
𝑥
= Vulnerable software versions
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| knownband | supercheckout | 5.07 ≤ 𝑥 < 6.07 | ADP |
Common Weakness Enumeration
References