Medium
CVSS 4.3
Overview
deleteicon.aspx in AspDotNetStorefront 3.3 allows remote attackers to delete arbitrary product images via a modified ProductID parameter.
deleteicon.aspx in AspDotNetStorefront 3.3 allows remote attackers to delete arb...
deleteicon.aspx in AspDotNetStorefront 3.3 allows remote attackers to delete arbitrary product images via a modified ProductID parameter.
This vulnerability is rated 🟡 MEDIUM.
Recommended actions: