Loading HuntDB...

Parameter tampering can result in product price manipulation

High
A
Adobe
Submitted None

Team Summary

Official summary from Adobe

Parameters set during the shopping cart checkout workflow are vulnerable to tampering. By intercepting POST requests and manipulating the XML payload, product prices could be set to arbitrary values.

Reported by khalidamin

Report Details

Additional information and metadata

State

Closed

Substate

Resolved

Submitted