漏洞标题
源码码ster在线 pizza 点餐系统 POST 参数ajax.php删除_category缺少身份验证
漏洞描述信息
源代码程序员在线披萨订购系统POST参数ajax.php delete_category缺少身份验证
CVSS信息
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
漏洞类别
N/A
漏洞标题
SourceCodester Online Pizza Ordering System POST Parameter ajax.php delete_category missing authentication
漏洞描述信息
A vulnerability classified as critical was found in SourceCodester Online Pizza Ordering System 1.0. Affected by this vulnerability is the function delete_category of the file ajax.php of the component POST Parameter Handler. The manipulation leads to missing authentication. The attack can be launched remotely. The associated identifier of this vulnerability is VDB-221455.
CVSS信息
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
漏洞类别
关键功能的认证机制缺失
漏洞标题
Online Pizza Ordering System 访问控制错误漏洞
漏洞描述信息
Online Pizza Ordering System是Carlo Montero个人开发者的一个在线比萨订购系统。 Online Pizza Ordering System 1.0版本存在访问控制错误漏洞,该漏洞源于缺少身份验证。
CVSS信息
N/A
漏洞类别
授权问题