CVE-2024-13203

A vulnerability was found in kurniaramadhan E-Commerce-PHP 1.0. It has been classified as problematic. Affected is an unknown function. The manipulation leads to cross-site request forgery. It is possible to launch the attack remotely. The vendor was contacted early about this disclosure but did not respond in any way.
CVSS

No CVSS.

Configurations

Configuration 1 (hide)

cpe:2.3:a:kurniaramadhan:e-commerce-php:1.0:*:*:*:*:*:*:*

History

02 Jul 2025, 19:10

Type Values Removed Values Added
First Time Kurniaramadhan e-commerce-php
Kurniaramadhan
CPE cpe:2.3:a:kurniaramadhan:e-commerce-php:1.0:*:*:*:*:*:*:*
References () https://vuldb.com/?ctiid.290796 - () https://vuldb.com/?ctiid.290796 - Permissions Required, VDB Entry
References () https://www.websecurityinsights.my.id/2024/12/ecommerce-php-by-kurniaramadhan-sql.html?m=1 - () https://www.websecurityinsights.my.id/2024/12/ecommerce-php-by-kurniaramadhan-sql.html?m=1 - Exploit, Third Party Advisory
References () https://vuldb.com/?id.290796 - () https://vuldb.com/?id.290796 - Third Party Advisory, VDB Entry

09 Jan 2025, 17:15

Type Values Removed Values Added
CWE CWE-352
CWE-862

09 Jan 2025, 03:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-01-09 03:15

Updated : 2025-07-02 19:10


NVD link : CVE-2024-13203

Mitre link : CVE-2024-13203


JSON object : View

Products Affected

kurniaramadhan

  • e-commerce-php
CWE

No CWE.