Vulnerability Description
Cross Site Request Forgery (CSRF) vulnerability in CS Cart 4.18.3, allows attackers to add products to a user's comparison list via a crafted HTTP request.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Cs-Cart | Cs-Cart | 4.18.3 |
Related Weaknesses (CWE)
References
- http://cs.comNot Applicable
- https://github.com/hackerwahab/CS-Cart-Vulns/blob/main/CVE-2025-50847.mdThird Party Advisory
FAQ
What is CVE-2025-50847?
CVE-2025-50847 is a vulnerability with a CVSS score of 6.5 (MEDIUM). Cross Site Request Forgery (CSRF) vulnerability in CS Cart 4.18.3, allows attackers to add products to a user's comparison list via a crafted HTTP request.
How severe is CVE-2025-50847?
CVE-2025-50847 has been rated MEDIUM with a CVSS base score of 6.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-50847?
Check the references section above for vendor advisories and patch information. Affected products include: Cs-Cart Cs-Cart.