RSS   Vulnerabilities for 'Commerce commonwealth'   RSS

2015-09-17
 
CVE-2015-7231

 

 
The Commerce Commonwealth (CBA) module 7.x-1.x before 7.x-1.5 for Drupal does not properly validate payments, which allows remote attackers to make a failed payment appear valid via a crafted URL, related to a "response from commweb."

 


Copyright 2024, cxsecurity.com

 

Back to Top