Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2g72-w35q-vw79

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The PayPal (aka MODULE_PAYMENT_PAYPAL_STANDARD) module before 1.1 in osCommerce Online Merchant before 2.3.4 allows remote attackers to set the payment recipient via a modified value of the merchant's e-mail address, as demonstrated by setting the recipient to one's self.

The PayPal (aka MODULE_PAYMENT_PAYPAL_STANDARD) module before 1.1 in osCommerce Online Merchant before 2.3.4 allows remote attackers to set the payment recipient via a modified value of the merchant's e-mail address, as demonstrated by setting the recipient to one's self.

EPSS

Процентиль: 69%
0.00601
Низкий

Связанные уязвимости

nvd
больше 13 лет назад

The PayPal (aka MODULE_PAYMENT_PAYPAL_STANDARD) module before 1.1 in osCommerce Online Merchant before 2.3.4 allows remote attackers to set the payment recipient via a modified value of the merchant's e-mail address, as demonstrated by setting the recipient to one's self.

EPSS

Процентиль: 69%
0.00601
Низкий