deleteicon.aspx in AspDotNetStorefront 3.3 consente agli aggressori remoti di cancellare le immagini dei prodotti arbitrarie tramite un parametro ProductID modificato. |
http://www.securityfocus.com/bid/10506 http://www.securityfocus.com/archive/1/365559 http://archives.neohapsis.com/archives/fulldisclosure/2004-06/0235.html http://www.osvdb.org/6958 http://secunia.com/advisories/11839 http://securityreason.com/securityalert/3206 https://exchange.xforce.ibmcloud.com/vulnerabilities/16377 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-2699 |
Vulnerabilità: CVE-2004-2699
