Privilege Escalation in Erick xmall v1.1 via Address Controller Method
An issue in Erick xmall v.1.1 and before allows a remote malicious user to escalate privileges via the updateAddress method of the Address Controller class.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
exrick xmall 1.1 |