📦 Ecshop

by Shopex

🔍 What is Ecshop?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2021-43679

CRITICAL CVSS 9.8 Dec 2, 2021

CVE-2021-43679 is a critical SQL injection vulnerability in ECShop v2.7.3's API client component that allows attackers to execute arbitrary SQL commands. This affects all ECShop v2.7.3 installations u...

CVE-2020-22205

CRITICAL CVSS 9.8 Jun 16, 2021

This vulnerability allows attackers to execute arbitrary SQL commands through the id parameter in ECShop 3.0's admin/shophelp.php file. This affects all ECShop 3.0 installations with the vulnerable ad...

CVE-2021-41460

HIGH CVSS 7.5 Jun 28, 2022

ECShop 4.1.0 contains a SQL injection vulnerability that allows attackers to execute arbitrary SQL commands through crafted inputs. This can lead to unauthorized access to sensitive database informati...

CVE-2024-35362

MEDIUM CVSS 5.4 May 22, 2024

Ecshop 3.6 contains a cross-site scripting (XSS) vulnerability in the article_cat.php file that allows attackers to inject malicious scripts into web pages. This affects all users of Ecshop 3.6 who ac...