code-projects Online Shoe Store
cpe:2.3:a:code-projects:online_shoe_store:*:*:*:*:*:*:*
- 1.0
A critical vulnerability has been identified in Code-Projects Online Shoe Store version 1.0, specifically within the file '/admin/index.php'. This vulnerability arises from broken access controls, allowing any user, including those unauthenticated, to gain administrative privileges and access the admin panel. The issue can be exploited remotely without any authentication.
Exploitation of this vulnerability allows unauthorized users to gain admin rights and access the administrative panel.
To reproduce this vulnerability, log in as a normal user and navigate to '/admin/index.php'. This action will grant admin privileges, allowing access to the admin panel.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.