CVE

Id
91891  
CVE No.
CVE-2016-5072  
Status
Candidate  
Description
OXID eShop before 2016-06-13 allows remote attackers to execute arbitrary code via a GET or POST request to the oxuser class. Fixed versions are Enterprise Edition v5.1.12, Enterprise Edition v5.2.9, Professional Edition v4.8.12, Professional Edition v4.9.9, Community Edition v4.8.12, Community Edition v4.9.9.  
Phase
Assigned (20160526)  
Votes
None (candidate not yet proposed)  
Comments