RSS   Vulnerabilities for 'XT\'   RSS

2020-04-30
 
CVE-2020-12101

CWE-276
 

 
The address-management feature in xt:Commerce 5.1 to 6.2.2 allows remote authenticated users to zero out other user's stored addresses by manipulating an id field in the POST request for altering an address.

 

 >>> Vendor: Xt-commerce 4 Products
Xt-commerce community made shopping
Xt-commerce
XT
XT\


Copyright 2024, cxsecurity.com

 

Back to Top