CVE

CVE-2017-14653

CVE-2017-14653

member/Orderinfo.asp in ASP4CMS AspCMS 2.7.2 allows remote authenticated users to read arbitrary order information via a modified OrderNo parameter.

Source: CVE-2017-14653

Exit mobile version