Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2r4p-p25w-cvpv

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

user.php in the Billing Control Panel in phpCoupon allows remote authenticated users to obtain Premium Member status, and possibly acquire free coupons, via a modified URL containing a certain billing parameter and REQ=auth, status=success, and custom=upgrade substrings, possibly related to PayPal transactions.

user.php in the Billing Control Panel in phpCoupon allows remote authenticated users to obtain Premium Member status, and possibly acquire free coupons, via a modified URL containing a certain billing parameter and REQ=auth, status=success, and custom=upgrade substrings, possibly related to PayPal transactions.

EPSS

Процентиль: 86%
0.02776
Низкий

Связанные уязвимости

nvd
больше 18 лет назад

user.php in the Billing Control Panel in phpCoupon allows remote authenticated users to obtain Premium Member status, and possibly acquire free coupons, via a modified URL containing a certain billing parameter and REQ=auth, status=success, and custom=upgrade substrings, possibly related to PayPal transactions.

EPSS

Процентиль: 86%
0.02776
Низкий