The SecOps Group CAP Question Answer
After purchasing an item on an e-commerce website, a user can view their order details by visiting the URL:
https://example.com/?order_id=53870
A security researcher pointed out that by manipulating the order_id value in the URL, a user can view arbitrary orders and sensitive information associated with that order_id. This attack is known as:
The SecOps Group CAP Summary
- Vendor: The SecOps Group
- Product: CAP
- Update on: Aug 4, 2025
- Questions: 60