VendorsWebidsupportwebid1.2.1
Vulnerabilities

Webidsupport WeBid Auction Script 1.2.1

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1CVEs
CVE-2024-32166
Webid v1.2.1 suffers from an Insecure Direct Object Reference (IDOR) - Broken Access Control vulnerability, allowing attackers to buy now an auction that is suspended (horizontal privilege escalation).
Published 2024-04-19 · Analyzed
8.8EPSS 0.007