High severity7.5NVD Advisory· Published Jul 1, 2021· Updated Jun 17, 2026
CVE-2021-20778
CVE-2021-20778
Description
Improper access control vulnerability in EC-CUBE 4.0.6 (EC-CUBE 4 series) allows a remote attacker to bypass access restriction and obtain sensitive information via unspecified vectors.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4cpe:2.3:a:ec-cube:ec-cube:4.0.6:-:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:ec-cube:ec-cube:4.0.6:-:*:*:*:*:*:*
- (no CPE)range: 4.0.6
- (no CPE)range: 4.0.6 (EC-CUBE 4 series)
- Range: 4.0.6
Patches
Vulnerability mechanics
References
3- www.ec-cube.net/info/weakness/weakness.phpnvdPatchVendor Advisory
- jvn.jp/en/jp/JVN57942445/index.htmlnvdThird Party Advisory
- jvn.jp/en/jp/JVN57942445/index.htmlnvdThird Party Advisory
News mentions
0No linked articles in our index yet.