CVE-2016-1200: Lockon Ec-Cube

Medium severity, CVSS 6.3. EPSS: 0.9% chance of exploitation in the next 30 days.

The management screen in LOCKON EC-CUBE 3.0.7 through 3.0.9 allows remote authenticated users to bypass intended access restrictions via unspecified vectors, a different vulnerability than CVE-2016-1199.

Affected products

  • Lockon Ec-Cube: version 3.0.7 only; version 3.0.8 only; version 3.0.9 only

Published 2016-04-30. Last modified 2026-06-17.