CVE-2024-50944
CVSS 3.1 Score 9.8 of 10 (high)
Details
Summary
CVE-2024-50944 is a newly disclosed vulnerability affecting SimplCommerce. This issue is rooted in an integer overflow vulnerability identified within the shopping cart functionality, specifically in commit 230310c8d7a0408569b292c5a805c459d47a1d8f of the CartController's AddToCart method. The flaw exists in the handling of the quantity parameter, which could potentially lead to unintended actions or unauthorized access if exploited. The vulnerability could pose a significant risk if attackers manage to manipulate the input, resulting in potential data breaches or unauthorized system access.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.