VYPR

Iwebshop 5

by Aircheng Org

Source repositories

CVEs (6)

  • CVE-2026-86669HigSep 8, 2026
    risk 0.47cvss 7.3epss

    A vulnerability was detected in aircheng-org iWebShop-5 up to 5.15. This affects the function Login of the file controllers/systemseller.php. Performing a manipulation of the argument Name results in improper authentication. It is possible to initiate the attack remotely. The…

  • CVE-2026-86666HigSep 8, 2026
    risk 0.47cvss 7.3epss

    A security flaw has been discovered in aircheng-org iWebShop-5 up to 5.15. Impacted is the function upload_json/uploadFile of the file controllers/pic.php. The manipulation results in unrestricted upload. The attack can be executed remotely. The exploit has been released to the…

  • CVE-2026-86665HigSep 8, 2026
    risk 0.47cvss 7.3epss

    A vulnerability was identified in aircheng-org iWebShop-5 up to 5.15. This issue affects the function Update::index of the file controllers/update.php. The manipulation leads to missing authorization. Remote exploitation of the attack is possible. The exploit is publicly…

  • CVE-2026-86667MedSep 8, 2026
    risk 0.31cvss 4.7epss

    A weakness has been identified in aircheng-org iWebShop-5 up to 5.15. The affected element is the function member_list of the file controllers/member.php. This manipulation of the argument Search causes sql injection. The attack is possible to be carried out remotely. The…

  • CVE-2026-86668MedSep 8, 2026
    risk 0.28cvss 4.3epss

    A security vulnerability has been detected in aircheng-org iWebShop-5 up to 5.15. The impacted element is the function uploadFile of the file controllers/pic.php. Such manipulation of the argument outerSrc/selectPhoto leads to cross site scripting. The attack may be performed…

  • CVE-2026-86670LowSep 8, 2026
    risk 0.24cvss 3.7epss

    A flaw has been found in aircheng-org iWebShop-5 up to 5.15. This impacts an unknown function of the file controllers/admin.php of the component Authentication Storage. Executing a manipulation of the argument Password can lead to password hash with insufficient computational…