← Back to CVEs
CVE-2016-4862
N/ADescription
Twigmo bundled with CS-Cart 4.3.9 and earlier and Twigmo bundled with CS-Cart Multi-Vendor 4.3.9 and earlier allow remote authenticated users to execute arbitrary PHP code on the servers.
CVE Details
CVSS v3.1 ScoreN/A
Published4/20/2017
Last Modified4/20/2025
Sourcenvd
Honeypot Sightings0
Affected Products
cs-cart:cs-cart
Weaknesses (CWE)
CWE-20
References
http://jvn.jp/en/jp/JVN55389065/index.html(vultures@jpcert.or.jp)
http://jvndb.jvn.jp/en/contents/2016/JVNDB-2016-000157.html(vultures@jpcert.or.jp)
http://tips.cs-cart.jp/fix-twigmo-vulnerability-20160914.html(vultures@jpcert.or.jp)
http://www.securityfocus.com/bid/92992(vultures@jpcert.or.jp)
http://jvn.jp/en/jp/JVN55389065/index.html(af854a3a-2127-422b-91ae-364da2661108)
http://jvndb.jvn.jp/en/contents/2016/JVNDB-2016-000157.html(af854a3a-2127-422b-91ae-364da2661108)
http://tips.cs-cart.jp/fix-twigmo-vulnerability-20160914.html(af854a3a-2127-422b-91ae-364da2661108)
http://www.securityfocus.com/bid/92992(af854a3a-2127-422b-91ae-364da2661108)
IOC Correlations
No correlations recorded
This product uses data from the NVD API but is not endorsed or certified by the NVD.