CVE-2016-3109: Unauthenticated Remote Code Execution Vulnerability

Severity: Critical

CVSS Score: 9.8

The backend/Login/load/ script in Shopware before 5.1.5 allows remote attackers to execute arbitrary code.