CVE-2021-20778

Improper Access Control in packagist/ec-cube/ec-cube

Identifiers

CVE-2021-20778

Package Slug

packagist/ec-cube/ec-cube

Vulnerability

Improper Access Control

Description

Improper access control vulnerability in EC-CUBE (EC-CUBE 4 series) allows a remote attacker to bypass access restriction and obtain sensitive information via unspecified vectors.

Affected Versions

Version 4.0.6

Solution

Upgrade to version 4.0.6-p1 or above.

Last Modified

2021-07-12

source