Vulnerability Description
PHP Scripts Mall Website Seller Script 2.0.3 uses the client side to enforce validation of an e-mail address, which allows remote attackers to modify a registered e-mail address by removing the validation code.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Website Seller Script Project | Website Seller Script | 2.0.3 |
Related Weaknesses (CWE)
References
- https://0day4u.wordpress.com/2018/03/12/website-seller-script-improper-validatioExploitThird Party Advisory
- https://0day4u.wordpress.com/2018/03/12/website-seller-script-improper-validatioExploitThird Party Advisory
FAQ
What is CVE-2018-6879?
CVE-2018-6879 is a vulnerability with a CVSS score of 8.8 (HIGH). PHP Scripts Mall Website Seller Script 2.0.3 uses the client side to enforce validation of an e-mail address, which allows remote attackers to modify a registered e-mail address by removing the valida...
How severe is CVE-2018-6879?
CVE-2018-6879 has been rated HIGH with a CVSS base score of 8.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2018-6879?
Check the references section above for vendor advisories and patch information. Affected products include: Website Seller Script Project Website Seller Script.