CVE Published: 01/10/2019 |
CVE Updated: 04/08/2024 |
CVE Year: 2019 Source: larry_cashdollar |
Vendor: abcprintf |
Product: Online Store Status : PUBLISHED
CVE-2019-8292 Description
Online Store System v1.0 delete_product.php doesn\'t check to see if a user authtenticated or has administrative rights allowing arbitrary product deletion.