Vulnerabilities (CVE)

Filtered by vendor Shiro8 Subscribe
Filtered by product Itemdetail Freearea Addition
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2016-1205 1 Shiro8 2 Category Freearea Addition, Itemdetail Freearea Addition 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
Cross-site scripting (XSS) vulnerability in the shiro8 (1) category_freearea_ addition_plugin plugin 1.0 and (2) itemdetail_freearea_ addition_plugin plugin 1.0 for EC-CUBE allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.