An insecure direct object reference (IDOR) in Online Market Place Site v1.0 allows attackers to modify products that are owned by other sellers.
References
Link | Resource |
---|---|
https://github.com/nsparker1337/OpenSource/blob/main/exploit_idor.md | Exploit Third Party Advisory |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2022-06-02 14:15
Updated : 2022-06-12 02:12
NVD link : CVE-2022-29627
Mitre link : CVE-2022-29627
CVE.ORG link : CVE-2022-29627
JSON object : View
Products Affected
online_market_place_site_project
- online_market_place_site
CWE
CWE-639
Authorization Bypass Through User-Controlled Key