CVE Published: 28/04/2017 |
CVE Updated: 05/08/2024 |
CVE Year: 2017 Source: jpcert |
Vendor: Frogman Office Inc. |
Product: CS-Cart Japanese Edition Status : PUBLISHED
CVE-2017-2143 Description
CS-Cart Japanese Edition v4.3.10-jp-1 and earlier, CS-Cart Multivendor Japanese Edition v4.3.10-jp-1 and earlier allows remote attackers to bypass access restriction to create a request to return a customer purchased item via rma.post.php.