Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-h47h-p6xc-8qv6

Опубликовано: 17 сент. 2024
Источник: github
Github: Не прошло ревью
CVSS4: 5.3
CVSS3: 6.3

Описание

A vulnerability classified as critical has been found in SourceCodester Online Eyewear Shop 1.0. This affects an unknown part of the file /classes/Master.php of the component Cart Content Handler. The manipulation of the argument cart_id/id leads to improper ownership management. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

A vulnerability classified as critical has been found in SourceCodester Online Eyewear Shop 1.0. This affects an unknown part of the file /classes/Master.php of the component Cart Content Handler. The manipulation of the argument cart_id/id leads to improper ownership management. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

EPSS

Процентиль: 78%
0.01173
Низкий

5.3 Medium

CVSS4

6.3 Medium

CVSS3

Дефекты

CWE-282

Связанные уязвимости

CVSS3: 6.3
nvd
больше 1 года назад

A vulnerability classified as critical has been found in SourceCodester Online Eyewear Shop 1.0. This affects an unknown part of the file /classes/Master.php of the component Cart Content Handler. The manipulation of the argument cart_id/id leads to improper ownership management. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

EPSS

Процентиль: 78%
0.01173
Низкий

5.3 Medium

CVSS4

6.3 Medium

CVSS3

Дефекты

CWE-282