best it Amazon Pay Plugin before 9.4.2 for Shopware exposes Sensitive Information to an Unauthorized Actor.
References
Link | Resource |
---|---|
https://aramido.de/blog/sicherheitshinweise/sicherheitswarnung-amazon-secret-key-offentlich-einsehbar-cve-2020-28199 | Third Party Advisory |
https://aramido.de/media/aramido-2020-006-disclosure-amazon-secret-access-key.md | Exploit Third Party Advisory |
Configurations
History
No history.
Information
Published : 2021-02-26 15:15
Updated : 2021-03-05 18:11
NVD link : CVE-2020-28199
Mitre link : CVE-2020-28199
CVE.ORG link : CVE-2020-28199
JSON object : View
Products Affected
bestit
- amazon_pay
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor