Macrozheng

Mall

16 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.27%
  • Veröffentlicht 07.02.2026 21:45:41
  • Zuletzt bearbeitet 05.03.2026 20:31:48

macrozheng mall version 1.0.3 and prior contains an authentication vulnerability in the mall-portal password reset workflow that allows an unauthenticated attacker to reset arbitrary user account passwords using only a victim’s telephone number. The ...

Exploit
  • EPSS 0.05%
  • Veröffentlicht 28.12.2025 03:02:05
  • Zuletzt bearbeitet 07.01.2026 20:53:11

A security vulnerability has been detected in macrozheng mall up to 1.0.3. This vulnerability affects unknown code of the file /member/address/update/ of the component Member Endpoint. The manipulation leads to improper authorization. Remote exploita...

Exploit
  • EPSS 0.04%
  • Veröffentlicht 20.11.2025 02:02:06
  • Zuletzt bearbeitet 25.11.2025 19:18:41

A vulnerability was detected in macrozheng mall up to 1.0.3. Affected by this issue is the function delete of the file /member/readHistory/delete. Performing manipulation of the argument ids results in improper access controls. Remote exploitation of...

Exploit
  • EPSS 0.05%
  • Veröffentlicht 13.11.2025 15:02:05
  • Zuletzt bearbeitet 25.11.2025 16:23:03

A vulnerability was detected in macrozheng mall-swarm and mall up to 1.0.3. Affected by this issue is the function paySuccess of the file /order/paySuccess. The manipulation of the argument orderID results in improper authorization. The attack can be...

Exploit
  • EPSS 0.05%
  • Veröffentlicht 13.11.2025 14:32:06
  • Zuletzt bearbeitet 25.11.2025 16:17:29

A security vulnerability has been detected in macrozheng mall-swarm and mall up to 1.0.3. Affected by this vulnerability is the function cancelOrder of the file /order/cancelOrder. The manipulation of the argument orderId leads to improper authorizat...

Exploit
  • EPSS 0.05%
  • Veröffentlicht 13.11.2025 14:15:48
  • Zuletzt bearbeitet 25.11.2025 16:37:53

A weakness has been identified in macrozheng mall-swarm and mall up to 1.0.3. Affected is the function cancelUserOrder of the file /order/cancelUserOrder. Executing manipulation of the argument orderId can lead to improper authorization. It is possib...

Exploit
  • EPSS 0.05%
  • Veröffentlicht 13.11.2025 13:32:09
  • Zuletzt bearbeitet 25.11.2025 16:40:57

A security flaw has been discovered in macrozheng mall-swarm and mall up to 1.0.3. This impacts the function detail of the file /order/detail/ of the component Order Details Handler. Performing manipulation of the argument orderId results in improper...

Exploit
  • EPSS 0.04%
  • Veröffentlicht 02.09.2025 22:02:07
  • Zuletzt bearbeitet 26.11.2025 16:29:06

A vulnerability was found in macrozheng mall up to 1.0.3. This vulnerability affects the function paySuccess of the file /order/paySuccess. The manipulation of the argument orderId results in authorization bypass. The attack can be launched remotely....

Exploit
  • EPSS 0.04%
  • Veröffentlicht 02.09.2025 21:32:06
  • Zuletzt bearbeitet 05.09.2025 17:44:00

A vulnerability has been found in macrozheng mall up to 1.0.3. This affects the function cancelOrder of the file /order/cancelUserOrder. The manipulation of the argument orderId leads to authorization bypass. The attack can be initiated remotely. The...

  • EPSS 0.03%
  • Veröffentlicht 27.08.2025 06:02:06
  • Zuletzt bearbeitet 26.11.2025 16:36:34

A vulnerability has been found in macrozheng mall up to 1.0.3. This impacts an unknown function of the component Registration. Such manipulation leads to weak password requirements. The attack can be executed remotely. Attacks of this nature are high...