CVE-2023-45854
Severity CVSS v4.0:
Pending analysis
Type:
CWE-190
Integer Overflow or Wraparound
Publication date:
16/09/2024
Last modified:
20/09/2024
Description
A Business Logic vulnerability in Shopkit 1.0 allows an attacker to add products with negative quantities to the shopping cart via the qtd parameter in the add-to-cart function.
Impact
Base Score 3.x
7.50
Severity 3.x
HIGH



