Cart32 Hidden Form Field...

- AV AC AU C I A
发布: 2002-11-13
修订: 2025-04-13

Cart32 does not sufficiently validate information provided in hidden form fields. As a result, an attacker may submit a custom form containing arbitrary values for hidden form fields. This may be used to manipulate prices for items purchased through the Cart32 shopping system. It may also be possible to manipulate other types of data contained in hidden form fields.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息