ecommerce-framework-bundle is the... CVE-2024-21665

- AV AC AU C I A
发布: 2024-01-11
修订: 2024-01-17

ecommerce-framework-bundle is the Pimcore Ecommerce Framework Bundle. An authenticated and unauthorized user can access the back-office orders list and be able to query over the information returned. Access control and permissions are not being enforced. This vulnerability has been patched in version 1.0.10.

0%
暂无可用Exp或PoC
当前有1条受影响产品信息