Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-567c-gxmx-3pq9

Опубликовано: 27 дек. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

An improper access control vulnerability exists in SimplCommerce at commit 230310c8d7a0408569b292c5a805c459d47a1d8f, allowing users to submit reviews without verifying if they have purchased the product.

An improper access control vulnerability exists in SimplCommerce at commit 230310c8d7a0408569b292c5a805c459d47a1d8f, allowing users to submit reviews without verifying if they have purchased the product.

EPSS

Процентиль: 91%
0.06044
Низкий

7.5 High

CVSS3

Дефекты

CWE-284
CWE-863

Связанные уязвимости

CVSS3: 7.5
nvd
около 1 года назад

An improper access control vulnerability exists in SimplCommerce at commit 230310c8d7a0408569b292c5a805c459d47a1d8f, allowing users to submit reviews without verifying if they have purchased the product.

EPSS

Процентиль: 91%
0.06044
Низкий

7.5 High

CVSS3

Дефекты

CWE-284
CWE-863