Shopxo · Shopxo · CVE-2022-28056
**Name of the Vulnerable Software and Affected Versions**
ShopXO versions 2.2.5 and below
**Description**
The issue is related to a system re-install vulnerability. It is exploited via the `Add` function in the `app/install/controller/Index.php` file.
**Recommendations**
For versions 2.2.5 and below, consider disabling the `Add` function in the `app/install/controller/Index.php` file as a temporary workaround until a patch is available.