Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Activefusions Subscribe
Filtered by product Order Status Batch Change
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-20828 2 Activefusions, Ec-cube 2 Order Status Batch Change, Ec-cube 2021-09-27 4.3 MEDIUM 6.1 MEDIUM
Cross-site scripting vulnerability in Order Status Batch Change Plug-in (for EC-CUBE 3.0 series) all versions allows a remote attacker to inject an arbitrary script via unspecified vectors.