Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Zionlab

Researcher fromdbappsecurity.com.cn
#26057of 53,624
9.8Total CVSS
Vulnerabilities · 1
PT-2021-10282
9.8
2021-05-05
Unknown · Online Book Store · CVE-2020-19111
Name of the Vulnerable Software and Affected Versions: Online Book Store version 1.0 Description: The issue is related to an Incorrect Access Control vulnerability. It could allow a remote malicious user to bypass authentication and obtain sensitive information via the admin verify.php endpoint. Recommendations: For Online Book Store version 1.0, consider restricting access to the `admin verify.php` endpoint until a proper fix is applied to prevent unauthorized access.