Vulnerabilities (CVE)

Filtered by vendor Ewire Subscribe
Filtered by product Payment Client
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2007-4925 1 Ewire 1 Payment Client 2024-02-04 7.5 HIGH N/A
The ewirePC_Decrypt function in ewirepcfunctions.php in eWire Payment Client (ePC) 1.60 and 1.70 allows remote attackers to execute arbitrary commands via shell metacharacters in the paymentinfo parameter to simplePHPLinux/3payment_receive.php.