A broken authentication mechanism in the endpoint excel.php of POS Codekop v2.0 allows unauthenticated attackers to download selling data.
References
Link | Resource |
---|---|
https://www.youtube.com/watch?v=7qaIeE2cyO4 | Exploit |
https://yuyudhn.github.io/pos-codekop-vulnerability/ | Exploit Third Party Advisory |
https://www.youtube.com/watch?v=7qaIeE2cyO4 | Exploit |
https://yuyudhn.github.io/pos-codekop-vulnerability/ | Exploit Third Party Advisory |
Configurations
History
No history.
Information
Published : 2023-06-30 02:15
Updated : 2024-11-21 08:09
NVD link : CVE-2023-36347
Mitre link : CVE-2023-36347
CVE.ORG link : CVE-2023-36347
JSON object : View
Products Affected
codekop
- codekop
CWE
CWE-306
Missing Authentication for Critical Function