ZeroHour

CVE-2021-26617

CVSS 3.1
9.8 critical
EPSS
1%p68
Published
()
Modified
Description

This issues due to insufficient verification of the various input values from user’s input. The vulnerability allows remote attackers to execute malicious code in Firstmall via navercheckout_add function.

Vendors
firstmall
Products
firstmall
Weakness
CWE-20
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.