VYPR
Medium severity6.1NVD Advisory· Published Aug 30, 2024· Updated Jun 17, 2026

CVE-2024-44682

CVE-2024-44682

Description

ShopXO 6.2 is vulnerable to Cross Site Scripting (XSS) in the backend that allows attackers to execute code by changing POST parameters.

Affected products

3
  • ShopXO/ShopXO2 versions
    cpe:2.3:a:shopxo:shopxo:6.2.0:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:shopxo:shopxo:6.2.0:*:*:*:*:*:*:*
    • (no CPE)range: =6.2
  • ShopXO/ShopXOdescription

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.