Review reviewHigh
CVE-2022-33077
nopcommerce
An access control issue in nopcommerce v4.50.2 allows attackers to arbitrarily modify any customer's address via the addressedit endpoint.
- CVSS
- 7.5
- EPSS
- 0.65% 47.8% percentile
- CISA KEV
- Not listed
- Published
- 2022.10.19