vendor:
Stock Management System
by:
Bobby Cooke & Adeeb Shah
5.9
CVSS
MEDIUM
Cross-Site Request Forgery (CSRF)
352
CWE
Product Name: Stock Management System
Affected Version From: 1
Affected Version To: 1
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: Windows 10 Pro + XAMPP | Python 2.7
2020
Stock Management System 1.0 – Cross-Site Request Forgery (Change Username)
Cross-Site Request Forgery (CSRF) vulnerability in 'changeUsername.php' webpage of SourceCodesters Stock Management System v1.0 allows remote attackers to deny future logins via changing the authenticated victims username when they visit a third-party site.