CVE-2014-5516: Konakart

Medium severity, CVSS 6.5. EPSS: 1.3% chance of exploitation in the next 30 days.

Cross-site request forgery (CSRF) vulnerability in the Storefront Application in DS Data Systems KonaKart before 7.3.0.0 allows remote attackers to hijack the authentication of administrators for requests that change a user email address via an unspecified GET request.

Affected products

  • Konakart Konakart: before 7.3.0.0 (fixed in 7.3.0.0)

Published 2020-01-03. Last modified 2026-06-17.