CVE-2020-28199

CRITICAL

bestit Amazon Pay < 9.4.2 - Unauthenticated Exposure of Sensitive Information

Title source: llm
STIX 2.1

Description

best it Amazon Pay Plugin before 9.4.2 for Shopware exposes Sensitive Information to an Unauthorized Actor.

Scores

CVSS v3 9.1
EPSS 0.0166
EPSS Percentile 73.8%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N

Details

CWE
CWE-200
Status published
Products (1)
bestit/amazon_pay < 9.4.2
Published Feb 26, 2021
Tracked Since Feb 18, 2026