Macrozheng

Mall

22 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.25%
  • Veröffentlicht 29.08.2026 22:15:10
  • Zuletzt bearbeitet 01.09.2026 03:16:51

A vulnerability has been found in macrozheng mall up to 1.0.3. The affected element is an unknown function of the file /order/paySuccess of the component Payment Status Endpoint. The manipulation of the argument orderId leads to enforcement of behavi...

  • EPSS 0.19%
  • Veröffentlicht 29.08.2026 11:00:08
  • Zuletzt bearbeitet 31.08.2026 22:17:21

A security vulnerability has been detected in macrozheng mall up to 1.0.3. This impacts an unknown function of the file /order/submit of the component Order Submission. The manipulation leads to race condition. It is possible to initiate the attack r...

  • EPSS 0.22%
  • Veröffentlicht 25.08.2026 13:19:32
  • Zuletzt bearbeitet 27.08.2026 17:20:47

A security vulnerability has been detected in macrozheng mall up to 1.0.3. Affected is the function OmsCartItemServiceImpl.updateQuantity of the file /cart/update/quantity. The manipulation of the argument quantity leads to business logic errors. The...

Exploit
  • EPSS 0.28%
  • Veröffentlicht 09.08.2026 17:15:09
  • Zuletzt bearbeitet 13.08.2026 20:17:20

A flaw has been found in macrozheng mall 0504e86. This vulnerability affects unknown code of the file /sso/getAuthCode of the component mall-portal Module. Executing a manipulation can lead to weak password recovery. The attack may be launched remote...

  • EPSS 0.24%
  • Veröffentlicht 09.07.2026 13:15:08
  • Zuletzt bearbeitet 09.07.2026 16:16:38

A vulnerability was identified in macrozheng mall up to 1.0.3. This impacts an unknown function of the file /returnApply/create of the component Portal Endpoint. The manipulation of the argument orderId leads to improper control of resource identifie...

  • EPSS 0.22%
  • Veröffentlicht 29.05.2026 16:15:07
  • Zuletzt bearbeitet 21.07.2026 15:10:00

A vulnerability was found in macrozheng mall up to 1.0.3. This affects an unknown function of the file /admin/update/ of the component Super Admin Password Handler. Performing a manipulation results in improper authorization. Remote exploitation of t...

  • EPSS 0.62%
  • Veröffentlicht 07.02.2026 21:45:41
  • Zuletzt bearbeitet 14.07.2026 16:16:55

macrozheng mall version 1.0.3 and prior contains an authentication vulnerability in the mall-portal password reset workflow that allows an unauthenticated attacker to reset arbitrary user account passwords using only a victim’s telephone number. The ...

Exploit
  • EPSS 0.23%
  • Veröffentlicht 28.12.2025 03:02:05
  • Zuletzt bearbeitet 07.10.2026 12:10:00

A security vulnerability has been detected in macrozheng mall up to 1.0.3. This vulnerability affects unknown code of the file /member/address/update/ of the component Member Endpoint. The manipulation leads to improper authorization. Remote exploita...

Exploit
  • EPSS 0.23%
  • Veröffentlicht 20.11.2025 02:02:06
  • Zuletzt bearbeitet 29.04.2026 01:00:01

A vulnerability was detected in macrozheng mall up to 1.0.3. Affected by this issue is the function delete of the file /member/readHistory/delete. Performing manipulation of the argument ids results in improper access controls. Remote exploitation of...

Exploit
  • EPSS 0.24%
  • Veröffentlicht 13.11.2025 15:02:05
  • Zuletzt bearbeitet 29.04.2026 01:00:01

A vulnerability was detected in macrozheng mall-swarm and mall up to 1.0.3. Affected by this issue is the function paySuccess of the file /order/paySuccess. The manipulation of the argument orderID results in improper authorization. The attack can be...