Vulnerabilities > CVE-2024-50651 - Authorization Bypass Through User-Controlled Key vulnerability in Geeeeeeeek Java Shop 1.0
Attack vector
NETWORK Attack complexity
LOW Privileges required
LOW Confidentiality impact
HIGH Integrity impact
NONE Availability impact
NONE Summary
java_shop 1.0 is vulnerable to Incorrect Access Control, which allows attackers to obtain sensitive information of users with different IDs by modifying the ID parameter.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |