PT-2019-10141 · Php Scripts Mall · Php Scripts Mall Basic B2B Script
Publicado
2019-03-20
·
Atualizado
2019-03-25
·
CVE-2018-20644
CVSS v3.1
8.8
Alta
| Vetor | AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions:
PHP Scripts Mall Basic B2B Script version 2.0.9
Description:
The issue concerns a Cross-Site Request Forgery (CSRF) via the Edit profile feature.
Recommendations:
For PHP Scripts Mall Basic B2B Script version 2.0.9, consider implementing proper CSRF protection mechanisms, such as tokens, to prevent unauthorized requests.
Exploit
Correção
CSRF
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Php Scripts Mall Basic B2B Script