Cross-Site Request Forgery Vulnerability in NIUSHOP E-commerce Platform
CVE-2019-16311
8.8HIGH
What is CVE-2019-16311?
NIUSHOP V1.11 is susceptible to a Cross-Site Request Forgery (CSRF) vulnerability. This flaw allows an attacker to perform actions on behalf of authenticated users without their consent, potentially compromising user accounts and sensitive information through a crafted request sent via the search_info parameter to index.php. It is crucial for users to implement protective measures to mitigate the risks associated with this vulnerability.