Vulnerability Details CVE-2014-5516
Cross-site request forgery (CSRF) vulnerability in the Storefront Application in DS Data Systems KonaKart before 7.3.0.0 allows remote attackers to hijack the authentication of administrators for requests that change a user email address via an unspecified GET request.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 36.9%
CVSS Severity
CVSS v3 Score 6.5
CVSS v2 Score 4.3
Products affected by CVE-2014-5516
-
cpe:2.3:a:konakart:konakart:2.2.2.0
-
cpe:2.3:a:konakart:konakart:2.2.4.0
-
cpe:2.3:a:konakart:konakart:2.2.6.0
-
cpe:2.3:a:konakart:konakart:3.2.0.0
-
cpe:2.3:a:konakart:konakart:4.1.0.0
-
cpe:2.3:a:konakart:konakart:4.2.0.0
-
cpe:2.3:a:konakart:konakart:4.2.0.1
-
cpe:2.3:a:konakart:konakart:5.0.0.0
-
cpe:2.3:a:konakart:konakart:5.2.0.0
-
cpe:2.3:a:konakart:konakart:5.5.0.0
-
cpe:2.3:a:konakart:konakart:5.5.0.1
-
cpe:2.3:a:konakart:konakart:5.5.0.2
-
cpe:2.3:a:konakart:konakart:6.0.0.0
-
cpe:2.3:a:konakart:konakart:6.3.0.0
-
cpe:2.3:a:konakart:konakart:6.5.0.0
-
cpe:2.3:a:konakart:konakart:6.5.1.0
-
cpe:2.3:a:konakart:konakart:7.1.0.0
-
cpe:2.3:a:konakart:konakart:7.1.1.0
-
cpe:2.3:a:konakart:konakart:7.1.1.1
-
cpe:2.3:a:konakart:konakart:7.2.0.0
-
cpe:2.3:a:konakart:konakart:7.2.0.1
-
cpe:2.3:a:konakart:konakart:7.2.0.2