QID 995424
Date Published: 2023-09-28
QID 995424: PHP (Composer) Security Update for opencart/opencart (GHSA-v4j2-cwmm-xg89)
Path Traversal in OpenCart versions 4.0.0.0 to 4.0.2.2 allows an authenticated user with access/modify privilege on the Log component to empty out arbitrary files on the server
Successful exploitation of this vulnerability could lead to a security breach or could affect integrity, availability, and confidentiality.
Solution
Refer to Github security advisory GHSA-v4j2-cwmm-xg89 for updates and patch information.
Vendor References
- GHSA-v4j2-cwmm-xg89 -
github.com/advisories/GHSA-v4j2-cwmm-xg89
CVEs related to QID 995424
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-v4j2-cwmm-xg89 | opencart/opencart |
|