Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
3D3.Com ShopFactory 5.8 uses client-side encryption and decryption for sensitive price data, which allows remote attackers to modify shopping cart prices by using the Javascript to decrypt the cookie that contains the data.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
3D3.Com ShopFactory购物车Cookie股价操纵漏洞
Vulnerability Description
3D3.Com ShopFactory 5.8版本为了敏感的价格数据使用客户端的加密和解密,远程攻击者可以通过使用Javascript来解密含有数据的cookie修改购物车价格。
CVSS Information
N/A
Vulnerability Type
N/A