TROYANOSYVIRUS
Volver a CVEs

CVE-2018-8761

N/A

Descripcion

protected\apps\member\controller\shopcarController.php in Yxcms building system (compatible cell phone) v1.4.7 has a logic flaw allowing attackers to modify a price, before form submission, by observing data in a packet capture.

Detalles CVE

Puntuacion CVSS v3.1N/A
Publicado3/19/2018
Ultima modificacion11/21/2024
Fuentenvd
Avistamientos honeypot0

Productos afectados

yxcms:yxcms

Correlaciones IOC

Sin correlaciones registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.