PT-2021-11458 · Amazon · Amazon Pay Plugin

Published

2021-02-26

·

Updated

2021-03-05

·

CVE-2020-28199

CVSS v3.1

9.1

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions: best it Amazon Pay Plugin versions prior to 9.4.2 for Shopware
Description: The issue exposes sensitive information to an unauthorized actor.
Recommendations: For versions prior to 9.4.2, update to version 9.4.2 or later to resolve the issue.

Exploit

Fix

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2020-28199

Affected Products

Amazon Pay Plugin