CVE-2023-47444
15.11.2023, 22:15
An issue discovered in OpenCart 4.0.0.0 to 4.0.2.3 allows authenticated backend users having common/security write privilege can write arbitrary untrusted data inside config.php and admin/config.php, resulting in remote code execution on the underlying server.
Vendor | Product | Version |
---|---|---|
opencart | opencart | 4.0.0.0 ≤ 𝑥 ≤ 4.0.2.3 |
𝑥
= Vulnerable software versions