CVE-2023-45854

A Business Logic vulnerability in Shopkit 1.0 allows an attacker to add products with negative quantities to the shopping cart via the qtd parameter in the add-to-cart function.
Configurations

No configuration.

History

17 Sep 2024, 21:35

Type Values Removed Values Added
Summary
  • (es) Una vulnerabilidad de lógica empresarial en Shopkit 1.0 permite a un atacante agregar productos con cantidades negativas al carrito de compras a través del parámetro qtd en la función agregar al carrito.
CWE CWE-190
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5

16 Sep 2024, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-09-16 18:15

Updated : 2024-09-20 12:31


NVD link : CVE-2023-45854

Mitre link : CVE-2023-45854

CVE.ORG link : CVE-2023-45854


JSON object : View

Products Affected

No product.

CWE
CWE-190

Integer Overflow or Wraparound