
SourceCodester 온라인 안경점 원격 파일 포함 취약점
공급업체: Sourcecodester [https://www.sourcecodester.com/php/16089/online-eyewear-shop-website-using-php-and-mysql-free-download.html]
참조: https://github.com/gurudattch/
제품: Online Eyewear Shop 버전: 1.0
취약점 개요:
Sourcecodester에서 개발한 Online Eyewear Shop 버전 1.0은 장바구니 ID, ID 조작 취약점에 취약합니다. 이 취약점을 통해 공격자는 장바구니 ID를 수정하여 다른 사용자의 장바구니에 원치 않는 항목을 추가하거나 삭제할 수 있습니다.


마찬가지로 이 기능은 항목 삭제에도 취약합니다.

