Post by IP_CAM » Wed Dec 28, 2022 7:17 pm

Opencart v.3.0.3.7 allows users to obtain database information or read server files through SQL injection in the background.
https://github.com/Live-Hack-CVE/CVE-2021-37823/

My Github OC Site: https://github.com/IP-CAM
5'600 + FREE OC Extensions, on the World's largest private Github OC Repository Archive Site.


User avatar
Legendary Member

Posts

Joined
Tue Mar 04, 2014 1:37 am
Location - Switzerland

Post by JNeuhoff » Wed Dec 28, 2022 8:05 pm

No need to panic: According to this site the hacker would first need to know the admin login details, in order to gain access to the System > Maintenance > Backup/Restore function.

Export/Import Tool * SpamBot Buster * Unused Images Manager * Instant Option Price Calculator * Number Option * Google Tag Manager * Survey Plus * OpenTwig


User avatar
Guru Member

Posts

Joined
Wed Dec 05, 2007 3:38 am

Who is online

Users browsing this forum: No registered users and 1 guest