Directory Traversal Vulnerability in osCommerce by osCommerce Inc.
CVE-2015-2965

Currently unrated

Key Information:

Vendor

Oscommerce

Vendor
CVE Published:
28 June 2015

What is CVE-2015-2965?

A directory traversal vulnerability exists in osCommerce versions up to 2.2ms1j-R8, allowing remote authenticated administrators to access sensitive files on the server. This can occur through unspecified methods that bypass security measures, potentially leading to unauthorized file disclosures. It is essential for users of the affected versions to apply security patches and follow best practices to mitigate the risk associated with this vulnerability.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.