Beveiligingsadvies

CVE-2025-1749

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-02-28 13:43:25
Laatst bijgewerkt 2025-02-28 14:11:59
Toegewezen door INCIBE
CVSS-score 4.7
Status PUBLISHED

Beschrijving

HTML injection vulnerabilities in OpenCart versions prior to 4.1.0. These vulnerabilities could allow an attacker to modify the HTML of the victim's browser by sending a malicious URL and modifying the parameter name in /account/voucher.