Описание
details2.php in OrganicPHP PHP-affiliate 1.0, and possibly later versions, allows remote attackers to modify information of other users by modifying certain hidden form fields.
Ссылки
- Vendor Advisory
- Vendor Advisory
- PatchVendor Advisory
- Vendor Advisory
- Vendor Advisory
- PatchVendor Advisory
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:organicphp:php-affiliate:1.0:*:*:*:*:*:*:*
cpe:2.3:a:organicphp:php-affiliate:1.1:*:*:*:*:*:*:*
EPSS
Процентиль: 78%
0.01148
Низкий
5 Medium
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
больше 3 лет назад
details2.php in OrganicPHP PHP-affiliate 1.0, and possibly later versions, allows remote attackers to modify information of other users by modifying certain hidden form fields.
EPSS
Процентиль: 78%
0.01148
Низкий
5 Medium
CVSS2
Дефекты
NVD-CWE-Other