Vulnerabilities (CVE)

Filtered by vendor Newbee-mall Project Subscribe
Filtered by product Newbee-mall
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-23449 1 Newbee-mall Project 1 Newbee-mall 2021-07-21 5.0 MEDIUM 7.5 HIGH
newbee-mall all versions are affected by incorrect access control to remotely gain privileges through NewBeeMallIndexConfigServiceImpl.java. Unauthorized changes can be made to any user information through the userID.