Логотип exploitDog
bind:CVE-2020-7964
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-7964

Количество 2

Количество 2

nvd логотип

CVE-2020-7964

около 6 лет назад

An issue was discovered in Mirumee Saleor 2.x before 2.9.1. Incorrect access control in the checkoutCustomerAttach mutations allows attackers to attach their checkouts to any user ID and consequently leak user data (e.g., name, address, and previous orders of any other customer).

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-rgcm-rpq9-9cgr

больше 4 лет назад

Missing Authentication for Critical Function in Saleor

CVSS3: 5.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-7964

An issue was discovered in Mirumee Saleor 2.x before 2.9.1. Incorrect access control in the checkoutCustomerAttach mutations allows attackers to attach their checkouts to any user ID and consequently leak user data (e.g., name, address, and previous orders of any other customer).

CVSS3: 5.3
0%
Низкий
около 6 лет назад
github логотип
GHSA-rgcm-rpq9-9cgr

Missing Authentication for Critical Function in Saleor

CVSS3: 5.3
0%
Низкий
больше 4 лет назад

Уязвимостей на страницу