VYPR

Bitrix E Store Module

Sign in to watch

by Bitrix

CVEs (1)

CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-2013-67880.000.00May 30, 2014The Bitrix e-Store module before 14.0.1 for Bitrix Site Manager uses sequential values for the BITRIX_SM_SALE_UID cookie, which makes it easier for remote attackers to guess the cookie value and bypass authentication via a brute force attack.