comersus_gatewayPayPal.asp in Comersus Cart 5.09, and possibly other versions before 5.098, allows remote attackers to change the prices of items by directly modifying them in the URL.
References
Link | Resource |
---|---|
http://www.securityfocus.com/bid/10674 | Exploit Vendor Advisory |
http://marc.info/?l=bugtraq&m=108922336529987&w=2 | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/16645 |
Configurations
Information
Published : 2004-08-05 21:00
Updated : 2017-07-10 18:30
NVD link : CVE-2004-0682
Mitre link : CVE-2004-0682
JSON object : View
CWE
Products Affected
comersus_open_technologies
- comersus_cart