CVE-2024-50945

Published Dec 27, 2024

Last updated 9 days ago

Overview

Description
An improper access control vulnerability exists in SimplCommerce at commit 230310c8d7a0408569b292c5a805c459d47a1d8f, allowing users to submit reviews without verifying if they have purchased the product.
Source
cve@mitre.org
NVD status
Awaiting Analysis

Weaknesses

134c704f-9b21-4f2e-91b3-4a467353bcc0
CWE-863

Social media

Hype score
Not currently trending
  1. eWPTXv2 latest CVE's CVE-2024-50944: Integer overflow in shopping cart functionality leads to price manipulation. CVE-2024-53476: bypassing inventory controls. CVE-2024-50945: Lack of purchase verification for product reviews. All of this seems good cases for Web Hacking 🧛

    @byt3n33dl3

    5 Jan 2025

    23 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  2. الحَمد لله, حصلت على 3x CVEs وشهادة eWPTX. CVE-2024-50944: Integer overflow in shopping cart functionality leads to price manipulation CVE-2024-53476: Race condition allowing bypass of inventory controls CVE-2024-50945: Lack of purchase verification for product reviews https://t

    @_D3CAFF

    3 Jan 2025

    1601 Impressions

    3 Retweets

    26 Likes

    8 Bookmarks

    5 Replies

    0 Quotes

  3. الحَمد لله, حصلت على 3x CVEs وشهادة eWPTX. CVE-2024-50944: Integer overflow in shopping cart functionality leads to price manipulation. CVE-2024-53476: Race condition allowing bypass of inventory controls. CVE-2024-50945: Lack of purchase verification for product reviews. https:

    @_D3CAFF

    3 Jan 2025

    1 Impression

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  4. الحَمد لله, حصلت على 3x CVEs وشهادة Web Application Penetration Tester eXtreme (eWPTX). CVE-2024-50944: Integer overflow in shopping cart functionality leads to price manipulation. CVE-2024-53476: Race condition allowing bypass of inventory controls. CVE-2024-50945: Lack of… http

    @_D3CAFF

    3 Jan 2025

    3 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  5. CVE-2024-50945 (CVSS:7.5, HIGH) is Awaiting Analysis. An improper access control vulnerability exists in SimplCommerce at commit 230310c8d7a0408569b292c5a805c459d47a1d8f, all..https://t.co/yycB7B5dIj #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    @cracbot

    1 Jan 2025

    29 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  6. CVE-2024-50945 An improper access control vulnerability exists in SimplCommerce at commit 230310c8d7a0408569b292c5a805c459d47a1d8f, allowing users to submit reviews without verifyin… https://t.co/b8Hz3xFWpU

    @CVEnew

    28 Dec 2024

    478 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes