Vulnerabilities (CVE)

Filtered by vendor Shopsystem-forum Subscribe
Filtered by product K\&s Shopsoftware
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2008-6768 1 Shopsystem-forum 1 K\&s Shopsoftware 2024-02-28 6.8 MEDIUM N/A
Unrestricted file upload vulnerability in admin/editor/images.php in K&S Shopsoftware allows remote attackers to execute arbitrary PHP code by uploading a file with an executable extension, then accessing it via a direct request to the file in images/upload/.