Skip to content
Permalink
main
Switch branches/tags

Name already in use

A tag already exists with the provided branch name. Many Git commands accept both tag and branch names, so creating this branch may cause unexpected behavior. Are you sure you want to create this branch?
Go to file
 
 
Cannot retrieve contributors at this time

Alphaware - Simple E-Commerce System has payment vulnerability

payment vulnerability

BUG_Author: Murasaki

Vulnerability File: /alphaware/summary.php

Modifying the amount parameter in the URL when paying for an order will change the price of the entire order.

Create an order, and you can see that the amount is 30,000.

Change the amount parameter in the URL.

The order amount will also change.

link

https://www.sourcecodester.com/php/11676/alphaware-simple-e-commerce-system.html