CVE
- Id
- 91891
- CVE No.
- CVE-2016-5072
- Status
- Candidate
- Description
- OXID eShop before 2016-06-13 allows remote attackers to execute arbitrary code via a GET or POST request to the oxuser class. Fixed versions are Enterprise Edition v5.1.12, Enterprise Edition v5.2.9, Professional Edition v4.8.12, Professional Edition v4.9.9, Community Edition v4.8.12, Community Edition v4.9.9.
- Phase
- Assigned (20160526)
- Votes
- None (candidate not yet proposed)
- Comments