PoC Index

CVE-2014-4962

MEDIUM 6.4EPSS 4.7%

Shopizer 1.1.5 and earlier allows remote attackers to reduce the total cost of their shopping cart via a negative number in the productQuantity parameter, which causes the price of the item to be subtracted from the total cost.

CVSS v2.0
6.4 MEDIUMAV:N/AC:L/Au:N/C:N/I:P/A:P
EPSS
4.71% chance of exploitation in the next 30 days, 91th percentile
Published
2014-07-15
Updated
2024-08-06

ExploitDB entries (1)

References

Related