Description
newbee-mall 1.0 is affected by cross-site scripting in shop-cart/settle. Users only need to write xss payload in their address information when buying goods, which is triggered when viewing the "View Recipient Information" of this order in "Order Management Office".
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-16194 | newbee-mall 1.0 is affected by cross-site scripting in shop-cart/settle. Users only need to write xss payload in their address information when buying goods, which is triggered when viewing the "View Recipient Information" of this order in "Order Management Office". |
References
| Link | Providers |
|---|---|
| https://github.com/newbee-ltd/newbee-mall/issues/33 |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T14:58:15.113Z
Reserved: 2020-08-13T00:00:00.000Z
Link: CVE-2020-23447
No data.
Status : Modified
Published: 2021-01-26T18:15:42.660
Modified: 2024-11-21T05:13:48.580
Link: CVE-2020-23447
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD