Description
nopCommerce 4.50.1 is vulnerable to Cross Site Scripting (XSS). At Apply for vendor account feature, an attacker can upload an arbitrary file to the system.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-32893 | nopCommerce 4.50.1 is vulnerable to Cross Site Scripting (XSS). At Apply for vendor account feature, an attacker can upload an arbitrary file to the system. |
References
| Link | Providers |
|---|---|
| https://github.com/nopSolutions/nopCommerce/issues/6192 |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-03T05:56:15.499Z
Reserved: 2022-04-04T00:00:00.000Z
Link: CVE-2022-28449
No data.
Status : Modified
Published: 2022-04-26T21:15:45.343
Modified: 2024-11-21T06:57:22.460
Link: CVE-2022-28449
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD