VulnerabilityModified
CVE-2002-1352
Per Magne Knutsen's CartMan shopping cart (cartman.php) 1.04 and earlier allows remote attackers to modify product prices by changing the price parameter.
MEDIUM 5.0EPSS 1.22%
Does this matter?
Lower severity and a low EPSS score (1.22%). Track it; it rarely justifies an emergency change on its own.
Description
Per Magne Knutsen's CartMan shopping cart (cartman.php) 1.04 and earlier allows remote attackers to modify product prices by changing the price parameter.
- CVSS 2.0
- 5.0 MEDIUMAV:N/AC:L/Au:N/C:N/I:P/A:N
- EPSS
- 1.22% probability · 67th percentile
- CISA KEV
- Not listed
- Affected
- per magne knutsen/cartman
- Source
- cve@mitre.org
References
- http://securitytracker.com/id?1005829Exploit, Vendor Advisory
- http://www.idefense.com/advisory/12.16.02c.txtExploit, Vendor Advisory
- http://securitytracker.com/id?1005829Exploit, Vendor Advisory
- http://www.idefense.com/advisory/12.16.02c.txtExploit, Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.