Description
Cross-Site Request Forgery (CSRF) vulnerability in Gosoft Software Proticaret E-Commerce allows Cross Site Request Forgery. This issue affects Proticaret E-Commerce: before v6.0 NOTE: According to the vendor, fixing process is still ongoing for v4.05.
Problem types
CWE-352 Cross-Site Request Forgery (CSRF)
Product status
Any version before v6.0
v4.05 (custom)
Credits
Ersin ERENLER
NSC Informatics
References
www.usom.gov.tr/bildirim/tr-25-0098
siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-25-0098