Логотип exploitDog
bind:CVE-2018-14020
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2018-14020

Количество 2

Количество 2

nvd логотип

CVE-2018-14020

больше 7 лет назад

An issue was discovered in the Paymorrow module 1.0.0 before 1.0.2 and 2.0.0 before 2.0.1 for OXID eShop. An attacker can bypass delivery-address change detection if the payment module doesn't use eShop's checkout procedure properly. To do so, the attacker must change the delivery address to one that is not verified by the Paymorrow module.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-489x-ccjw-q7c4

больше 3 лет назад

Paymorrow Improper Input Validation vulnerability

CVSS3: 5.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2018-14020

An issue was discovered in the Paymorrow module 1.0.0 before 1.0.2 and 2.0.0 before 2.0.1 for OXID eShop. An attacker can bypass delivery-address change detection if the payment module doesn't use eShop's checkout procedure properly. To do so, the attacker must change the delivery address to one that is not verified by the Paymorrow module.

CVSS3: 5.3
0%
Низкий
больше 7 лет назад
github логотип
GHSA-489x-ccjw-q7c4

Paymorrow Improper Input Validation vulnerability

CVSS3: 5.3
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу