Логотип exploitDog
bind:CVE-2020-9009
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-9009

Количество 2

Количество 2

nvd логотип

CVE-2020-9009

почти 3 года назад

The ShipStation.com plugin 1.1 and earlier for CS-Cart allows remote attackers to insert arbitrary information into the database (via action=shipnotify) because access to this endpoint is completely unchecked. The attacker must guess an order number.

CVSS3: 3.7
EPSS: Низкий
github логотип

GHSA-rgw9-2qv4-ghxq

почти 3 года назад

The ShipStation.com plugin 1.1 and earlier for CS-Cart allows remote attackers to insert arbitrary information into the database (via action=shipnotify) because access to this endpoint is completely unchecked. The attacker must guess an order number.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-9009

The ShipStation.com plugin 1.1 and earlier for CS-Cart allows remote attackers to insert arbitrary information into the database (via action=shipnotify) because access to this endpoint is completely unchecked. The attacker must guess an order number.

CVSS3: 3.7
0%
Низкий
почти 3 года назад
github логотип
GHSA-rgw9-2qv4-ghxq

The ShipStation.com plugin 1.1 and earlier for CS-Cart allows remote attackers to insert arbitrary information into the database (via action=shipnotify) because access to this endpoint is completely unchecked. The attacker must guess an order number.

0%
Низкий
почти 3 года назад

Уязвимостей на страницу