漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
SourceCodester Online Food Ordering System POST Parameter Actions.php save_product logic error
Vulnerability Description
A vulnerability was identified in SourceCodester Online Food Ordering System 1.0. Affected by this issue is the function save_product of the file /Actions.php of the component POST Parameter Handler. Such manipulation of the argument price leads to business logic errors. The attack may be performed from remote. The exploit is publicly available and might be used.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L
Vulnerability Type
业务逻辑错误
Vulnerability Title
SourceCodester Online Food Ordering System 安全漏洞
Vulnerability Description
SourceCodester Online Food Ordering System是SourceCodester开源的一个在线订餐系统。 SourceCodester Online Food Ordering System 1.0版本存在安全漏洞,该漏洞源于对POST参数处理器组件文件/Actions.php中save_product函数的参数price的操作,可能导致业务逻辑错误。
CVSS Information
N/A
Vulnerability Type
N/A