CVE-2022-28888

Spryker Commerce OS 1.4.2 allows Remote Command Execution.
Configurations

Configuration 1 (hide)

cpe:2.3:o:spryker:cloud_commerce:*:*:*:*:*:*:*:*

History

09 May 2023, 18:15

Type Values Removed Values Added
References
  • (MISC) http://packetstormsecurity.com/files/172257/Spryker-Commerce-OS-1.0-SQL-Injection.html -

09 May 2023, 04:15

Type Values Removed Values Added
References
  • (FULLDISC) http://seclists.org/fulldisclosure/2023/May/2 -

Information

Published : 2022-07-13 18:15

Updated : 2023-05-09 18:15


NVD link : CVE-2022-28888

Mitre link : CVE-2022-28888


JSON object : View

Products Affected

spryker

  • cloud_commerce
CWE
CWE-78

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')