CVE-2024-50654

lilishop <=4.2.4 is vulnerable to Incorrect Access Control, which can allow attackers to obtain coupons beyond the quantity limit by capturing and sending the data packets for coupon collection in high concurrency.
Configurations

Configuration 1 (hide)

cpe:2.3:a:pickmall:lilishop:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2024-11-15 17:15

Updated : 2024-11-21 19:15


NVD link : CVE-2024-50654

Mitre link : CVE-2024-50654

CVE.ORG link : CVE-2024-50654


JSON object : View

Products Affected

pickmall

  • lilishop
CWE
NVD-CWE-noinfo CWE-346

Origin Validation Error