Macrozheng

Mall

17 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.22%
  • Veröffentlicht 29.05.2026 16:15:07
  • Zuletzt bearbeitet 29.05.2026 20:10:20

A vulnerability was found in macrozheng mall up to 1.0.3. This affects an unknown function of the file /admin/update/ of the component Super Admin Password Handler. Performing a manipulation results in improper authorization. Remote exploitation of t...

  • EPSS 0.62%
  • Veröffentlicht 07.02.2026 21:45:41
  • Zuletzt bearbeitet 07.04.2026 18:16:40

macrozheng mall version 1.0.3 and prior contains an authentication vulnerability in the mall-portal password reset workflow that allows an unauthenticated attacker to reset arbitrary user account passwords using only a victim’s telephone number. The ...

Exploit
  • EPSS 0.22%
  • Veröffentlicht 28.12.2025 03:02:05
  • Zuletzt bearbeitet 29.04.2026 01:00:01

A security vulnerability has been detected in macrozheng mall up to 1.0.3. This vulnerability affects unknown code of the file /member/address/update/ of the component Member Endpoint. The manipulation leads to improper authorization. Remote exploita...

Exploit
  • EPSS 0.2%
  • Veröffentlicht 20.11.2025 02:02:06
  • Zuletzt bearbeitet 29.04.2026 01:00:01

A vulnerability was detected in macrozheng mall up to 1.0.3. Affected by this issue is the function delete of the file /member/readHistory/delete. Performing manipulation of the argument ids results in improper access controls. Remote exploitation of...

Exploit
  • EPSS 0.21%
  • Veröffentlicht 13.11.2025 15:02:05
  • Zuletzt bearbeitet 29.04.2026 01:00:01

A vulnerability was detected in macrozheng mall-swarm and mall up to 1.0.3. Affected by this issue is the function paySuccess of the file /order/paySuccess. The manipulation of the argument orderID results in improper authorization. The attack can be...

Exploit
  • EPSS 0.27%
  • Veröffentlicht 13.11.2025 14:32:06
  • Zuletzt bearbeitet 29.04.2026 01:00:01

A security vulnerability has been detected in macrozheng mall-swarm and mall up to 1.0.3. Affected by this vulnerability is the function cancelOrder of the file /order/cancelOrder. The manipulation of the argument orderId leads to improper authorizat...

Exploit
  • EPSS 0.27%
  • Veröffentlicht 13.11.2025 14:15:48
  • Zuletzt bearbeitet 29.04.2026 01:00:01

A weakness has been identified in macrozheng mall-swarm and mall up to 1.0.3. Affected is the function cancelUserOrder of the file /order/cancelUserOrder. Executing manipulation of the argument orderId can lead to improper authorization. It is possib...

Exploit
  • EPSS 0.29%
  • Veröffentlicht 13.11.2025 13:32:09
  • Zuletzt bearbeitet 29.04.2026 01:00:01

A security flaw has been discovered in macrozheng mall-swarm and mall up to 1.0.3. This impacts the function detail of the file /order/detail/ of the component Order Details Handler. Performing manipulation of the argument orderId results in improper...

Exploit
  • EPSS 0.27%
  • Veröffentlicht 02.09.2025 22:02:07
  • Zuletzt bearbeitet 29.04.2026 01:00:01

A vulnerability was found in macrozheng mall up to 1.0.3. This vulnerability affects the function paySuccess of the file /order/paySuccess. The manipulation of the argument orderId results in authorization bypass. The attack can be launched remotely....

Exploit
  • EPSS 0.3%
  • Veröffentlicht 02.09.2025 21:32:06
  • Zuletzt bearbeitet 29.04.2026 01:00:01

A vulnerability has been found in macrozheng mall up to 1.0.3. This affects the function cancelOrder of the file /order/cancelUserOrder. The manipulation of the argument orderId leads to authorization bypass. The attack can be initiated remotely. The...