CVE-2022-33077
19.10.2022, 02:15
An access control issue in nopcommerce v4.50.2 allows attackers to arbitrarily modify any customer's address via the addressedit endpoint.Enginsight
Vendor | Product | Version |
---|---|---|
nopcommerce | nopcommerce | 𝑥 ≤ 4.50.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References