CVE Published: 10/05/2023 |
CVE Updated: 02/08/2024 |
CVE Year: 2023 Source: jpcert |
Vendor: NE Inc. |
Product: NEXT ENGINE Integration Plugin (for EC-CUBE 2.0 series) Status : PUBLISHED
CVE-2023-27919 Description
Authentication bypass vulnerability in NEXT ENGINE Integration Plugin (for EC-CUBE 2.0 series) all versions allows a remote unauthenticated attacker to alter the information stored in the system.