Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
spa-cartcms Checkout Page checkout behavioral workflow
Vulnerability Description
A vulnerability, which was classified as problematic, has been found in spa-cartcms 1.9.0.6. This issue affects some unknown processing of the file /checkout of the component Checkout Page. The manipulation of the argument quantity with the input -10 leads to enforcement of behavioral workflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-268895.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Vulnerability Type
行为工作流的不恰当实施
Vulnerability Title
SPA-Cart 安全漏洞
Vulnerability Description
SPA-Cart是SPA-Cart公司的一个购物车软件。 SPA-Cart 1.9.0.6版本存在安全漏洞,该漏洞源于对参数quantity进行错误操作会导致强制执行行为工作流。
CVSS Information
N/A
Vulnerability Type
N/A