Ineffective Time Check Operation in PepeAuctionSale 1.0 Allows Access Control Compromise

Ineffective Time Check Operation in PepeAuctionSale 1.0 Allows Access Control Compromise

CVE-2020-19766 · HIGH Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

The time check operation of PepeAuctionSale 1.0 can be rendered ineffective by assigning a large number to the _duration variable, compromising access control to the application.

Learn more about our Web Application Penetration Testing UK.