VendorsLOCKONec-cube2.13.2
Vulnerabilities

LOCKON EC-CUBE 2.13.2

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1CVEs
CVE-2015-5665
Cross-site request forgery (CSRF) vulnerability in LOCKON EC-CUBE 2.11.0 through 2.13.3 allows remote attackers to hijack the authentication of arbitrary users for requests that write to PHP scripts, related to the doValidToken function.
Published 2015-10-27 · Modified
5.1EPSS 0.006