CVE-2024-13203

A vulnerability was found in kurniaramadhan E-Commerce-PHP 1.0. It has been classified as problematic. Affected is an unknown function. The manipulation leads to cross-site request forgery. It is possible to launch the attack remotely. The vendor was contacted early about this disclosure but did not respond in any way.
Configurations

No configuration.

History

09 Jan 2025, 17:15

Type Values Removed Values Added
References () https://www.websecurityinsights.my.id/2024/12/ecommerce-php-by-kurniaramadhan-sql.html?m=1 - () https://www.websecurityinsights.my.id/2024/12/ecommerce-php-by-kurniaramadhan-sql.html?m=1 -
Summary
  • (es) Se ha detectado una vulnerabilidad en kurniaramadhan E-Commerce-PHP 1.0. Se ha clasificado como problemática. Se trata de una función desconocida. La manipulación conduce a cross-site request forgery. Es posible lanzar el ataque de forma remota. Se contactó al proveedor con anticipación sobre esta revelación, pero no respondió de ninguna manera.

09 Jan 2025, 03:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-01-09 03:15

Updated : 2025-01-09 17:15


NVD link : CVE-2024-13203

Mitre link : CVE-2024-13203

CVE.ORG link : CVE-2024-13203


JSON object : View

Products Affected

No product.

CWE
CWE-352

Cross-Site Request Forgery (CSRF)

CWE-862

Missing Authorization