System Re-install Vulnerability in ShopXO by Gongfuxiang
CVE-2022-28056
9.8CRITICAL
What is CVE-2022-28056?
A system re-install vulnerability has been identified in ShopXO versions 2.2.5 and earlier, which can potentially allow unauthorized reinstallation of the system through the Add function in app/install/controller/Index.php. This flaw can lead to significant security risks if left unaddressed, as it may enable attackers to manipulate or compromise the application and its data.