Vulnerabilities (CVE)

Filtered by vendor Nopcommerce Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2019-19683 1 Nopcommerce 1 Nopcommerce 2019-12-17 9.0 HIGH 9.1 CRITICAL
RoxyFileman, as shipped with nopCommerce v4.2.0, is vulnerable to ../ path traversal via d or f to Admin/RoxyFileman/ProcessRequest because of Libraries/Nop.Services/Media/RoxyFileman/FileRoxyFilemanService.cs.