CVE-2024-50654 Information

Description

lilishop <=4.2.4 is vulnerable to Incorrect Access Control which can allow attackers to obtain coupons beyond the quantity limit by capturing and sending the data packets for coupon collection in high concurrency.

Reference

https://github.com/Yllxx03/CVE/blob/main/lilishop/CouponLogicVulnerability.md https://github.com/Yllxx03/CVE/tree/main/CVE-2024-50654

Share on: